Skip to main content

Perspectives sur les recherches

Gardez une longueur d'avance sur les menaces grâce à des recherches menées par des experts, à la veille sur les menaces et à des perspectives décisionnelles sur la cybersécurité.

image principale

Featured Articles

Cyber Crime Exploits and Zero-Days IoT and Smart Devices Network Deep Dives Software supply chain Botnets Financial services
The Rise of Residential Proxies as a Cybercrime Enabler

This research discusses how residential proxies help cybercriminals bypass antifraud and IT security systems, and how vulnerabilities in the IoT supply chain are exploited where Android-based devices are shipped pre-infected.

Read Article
AI Exploits and Zero-Days LLMS General Markets Deep Dives
Unveiling AI Agent Vulnerabilities Part III: Data Exfiltration

In the third part of our series we demonstrate how risk intensifies in multi-modal AI agents, where hidden instructions embedded within innocuous-looking images or documents can trigger sensitive data exfiltration without any user interaction.

Read Article
Unveiling AI Agent Vulnerabilities Part II: Code Execution

Our research examines vulnerabilities that affect Large Language Model (LLM) powered agents with code execution, document upload, and internet access capabilities. This is the second part of a series diving into the critical vulnerabilities in AI agents.

Read Article
The Ever-Evolving Threat of the Russian-Speaking Cybercriminal Underground

We dive into one of the most sophisticated and impactful ecosystems within the global cybercrime landscape. Our research looks at tools and techniques, specialized forums, popular services, plus a deeply ingrained culture of secrecy and collaboration.

Read Article
Understanding Hacktivists: The Overlap of Ideology and Cybercrime

Hacktivist groups are driven by a political or ideological agenda. In the past, their actions were likened to symbolic, digital graffiti. Nowadays, hacktivist groups resemble urban gangs. Previously composed of low-skilled individuals, these groups have evolved into medium- to high-skill teams, often smaller in size but far more capable.

Read Article
Ransomware and extortion Research Features Raas Exploits and Zero-Days Cybercriminal Underground Information technology Education Financial services
Ransomware Spotlight: Ransomhub

RansomHub is a young Ransomware-as-a-Service (RaaS) group tracked by Trend Micro as Water Bakunawa. Despite being a young ransomware group first detected in February 2024, RansomHub moves boldly by targeting larger enterprises more likely to pay ransoms.

Read Article
From Vulnerable to Resilient: Cutting Ransomware Risk with Proactive Cyber Risk Exposure Management

This article highlights the critical importance of reducing the Cyber Risk Index, presenting findings that establishes a significant correlation between higher Risk Indices and increased susceptibility to ransomware infections.

Read Article
AI Assistants in the Future: Security Concerns and Risk Management

The article explores the evolving landscape of AI digital assistants, highlighting their transformative potential, associated security risks, and the importance of robust design and collaboration to ensure a secure and user-centric future.

Read Article
AI vs AI: DeepFakes and eKYC

This analysis investigates the security risks of eKYC systems in relation to deepfake attacks, highlighting the diverse strategies employed by cybercriminals in bypassing eKYC security measures.

Read Article
Ransomware and extortion Healthcare & Life Sciences Manufacturing Exploits and Zero-Days Cybercriminal Underground
Ransomware Spotlight: INC

INC ransomware has been observed to exploit CVE-2023-3519 and uses HackTool.Win32.ProcTerminator.A for defense evasion and HackTool.PS1.VeeamCreds for credential access in its different attack chains.

Read Article