Skip to main content

【イベント】TrendAI™ Spark 2026 開催

AIセキュリティの最前線を探るグローバルイベント「Spark 2026」を全国5都市で開催します。

TrendAI™ Deep Research

spark

注目のリサーチ記事

2026年上半期のAPT動向を分析: 「信頼」を武器化する攻撃者
APT
2026年上半期のAPT動向を分析: 「信頼」を武器化する攻撃者

国家との関連が疑われる攻撃者は、攻撃チェーンのあらゆる段階にAIを組み込みながら、防御側がすでに信頼しているサービスの内側に自らのインフラを潜ませています。本レポートでは、こうした活動を突き動かす地政学的背景と、防御側が次に優先すべき対策を読み解きます。

TrendAI™ Research
Read article
Expert data center IT technician upgrading hardware equipment
AI governance
ソブリンAIのセキュリティ確保:物理・ソフトウェア・モデルの各サプライチェーンにわたる実践的コントロール

ソブリンAIでは、セキュリティスタックのあらゆるレイヤーの責任が運用者の手に委ねられます。本記事では、この転換に伴う脅威と、国家が保有するAIシステムの信頼性を保つための実践的なコントロールをあわせて解説します。

Numaan Huq, David Girard
Read article
An Invisible Attack Surface: Thousands of Industrial Control Systems Exposed Near Data Centers
Cloud security
見えないアタックサーフェス:データセンター周辺で露出する数千台の産業制御システム

TrendAI™ Researchが米国のデータセンター周辺にあるICSプロトコルを調査したところ、冷却、電力、環境設備といった重要インフラを制御する数千台の脆弱なデバイスが見つかりました。運用効率を重視し、セキュリティを前提とせずに設計されたこれらのシステムは、公開インターネットからアクセス可能な状態にありました。

Stephen Hilt, Numaan Huq
Read article
IoT Security Issues, Threats, and Defenses

As the IoT continues to influence more environments and settings, we review what IoT security is and why it remains essential today.

Read Article
サイバー犯罪
TeamTNT Activities Probed: Credential Theft, Cryptocurrency Mining, and More

Our research sheds light on the tools and techniques used by TeamTNT and the potential impact of the group’s sundry malicious activities.

Read Article
サイバー犯罪アンダーグラウンド
Trends and Shifts in the Underground N-Day Exploit Market

Our two-year research provides insights into the life cycle of exploits, the types of exploit buyers and sellers, and the business models that are reshaping the underground exploit market.

Read Article
ランサムウェアと恐喝 エクスプロイトとゼロデイ
Ransomware Double Extortion and Beyond: REvil, Clop, and Conti

Ransomware-stricken organizations grapple with multilevel extortion schemes that are advancing at an alarming rate. What exactly happens in these campaigns? We scrutinize three active ransomware families associated with these schemes to find out.

Read Article
サイバー犯罪 ランサムウェアと恐喝
Modern Ransomware's Double Extortion Tactics and How to Protect Enterprises Against Them

Modern ransomware like Nefilim present new challenges and security concerns for enterprises across the world. How do these new families differ from traditional ransomware? And what can organizations do to mitigate risks?

Read Article
サイバー犯罪 ランサムウェアと恐喝
Locked, Loaded, and in the Wrong Hands: Legitimate Tools Weaponized for Ransomware in 2021

These tools were intended for use in security research and other authorized purposes. However, cybercriminals have found a way to exploit them for ransomware campaigns. What are some of these tools and how exactly are they weaponized?

Read Article
エクスプロイトとゼロデイ
The Nightmares of Patch Management: The Status Quo and Beyond

We discuss the challenges that organizations face in managing endpoint and server patches.

Read Article
Cloud security
Security 101: Protecting Serverless and Container Applications with RASP (Runtime Application Self-Protection)

This article zeroes in on certain security considerations that developers need to know and the ways that they can build the best defense for container-based and serverless applications through runtime application self-protection (also known as RASP).

Read Article
Connected car
In Transit, Interconnected, at Risk: Cybersecurity Risks of Connected Cars

The use of connected cars continues to grow. While the vehicles’ link to technologies such as 5G and the cloud present opportunities for improving efficiency and safety, it can also attract risks from threat actors as well.

Read Article
サイバー犯罪 ランサムウェアと恐喝
The State of Ransomware: 2020’s Catch-22

Ransomware continues the trend of targeted attacks but with the added challenge of double extortion. Organizations need to be one step ahead of such coercive tactics to avoid potential disruptions, financial losses, and reputational damage.

Read Article