Skip to main content

【イベント】TrendAI™ Spark 2026 開催

AIセキュリティの最前線を探るグローバルイベント「Spark 2026」を全国5都市で開催します。

TrendAI™ Deep Research

spark

注目のリサーチ記事

2026年上半期のAPT動向を分析: 「信頼」を武器化する攻撃者
APT
2026年上半期のAPT動向を分析: 「信頼」を武器化する攻撃者

国家との関連が疑われる攻撃者は、攻撃チェーンのあらゆる段階にAIを組み込みながら、防御側がすでに信頼しているサービスの内側に自らのインフラを潜ませています。本レポートでは、こうした活動を突き動かす地政学的背景と、防御側が次に優先すべき対策を読み解きます。

TrendAI™ Research
Read article
Expert data center IT technician upgrading hardware equipment
AI governance
ソブリンAIのセキュリティ確保:物理・ソフトウェア・モデルの各サプライチェーンにわたる実践的コントロール

ソブリンAIでは、セキュリティスタックのあらゆるレイヤーの責任が運用者の手に委ねられます。本記事では、この転換に伴う脅威と、国家が保有するAIシステムの信頼性を保つための実践的なコントロールをあわせて解説します。

Numaan Huq, David Girard
Read article
An Invisible Attack Surface: Thousands of Industrial Control Systems Exposed Near Data Centers
Cloud security
見えないアタックサーフェス:データセンター周辺で露出する数千台の産業制御システム

TrendAI™ Researchが米国のデータセンター周辺にあるICSプロトコルを調査したところ、冷却、電力、環境設備といった重要インフラを制御する数千台の脆弱なデバイスが見つかりました。運用効率を重視し、セキュリティを前提とせずに設計されたこれらのシステムは、公開インターネットからアクセス可能な状態にありました。

Stephen Hilt, Numaan Huq
Read article
サイバー犯罪 Cloud security
A Look at Linux: Threats, Risks, and Recommendations

This article aims to discuss the Linux threat landscape and examine how Linux has become an attractive target for attackers, as well as how it can be prone to a variety of threats and risks.

Read Article
AI ソーシャルエンジニアリング
Exploiting AI: How Cybercriminals Misuse and Abuse AI and ML

We discuss the present state of the malicious uses and abuses of AI and ML and the plausible future scenarios in which cybercriminals might abuse these technologies for ill gain.

Read Article
サイバー犯罪アンダーグラウンド Cloud security
Cybercriminal ‘Cloud of Logs’: The Emerging Underground Business of Selling Access to Stolen Data

We take a closer look at an emerging underground market that is driven by malicious actors who sell access to a gargantuan amount of stolen data, frequently advertised in the underground as “cloud of logs."

Read Article
サイバー犯罪
COVID-19 Used in Malicious Campaigns

Threat actors take advantage of the spread of COVID-19 for malicious campaigns. Goods and services related to the virus also appear in underground marketplaces and cybercriminal forums.

Read Article
ランサムウェアと恐喝
Ryuk 2020: Distributing Ransomware via TrickBot and BazarLoader

Starting this year, Ryuk began using another dropper called BazarLoader (also known as BazarBackdoor), which is primarily distributed via phishing emails that contain either malicious attachments or links to websites that host malware.

Read Article
IoTとスマートデバイス
A Ride on Taiwan’s Self-Driving Bus

We went for a ride on the self-driving bus now being tested in Taiwan. Here are our insights.

Read Article
Operation Earth Kitsune: Tracking SLUB’s Current Operations

A watering hole campaign we dubbed as Operation Earth Kitsune is spying on users’ systems through compromised websites. Using SLUB and two new malware variants, the attacks exploit vulnerabilities including those of Google Chrome and Internet Explorer.

Read Article
サイバー犯罪アンダーグラウンド
Inside the Bulletproof Hosting Business: Cybercriminal Methods and OpSec

Bulletproof hosting (BPH) services have long been crucial parts of the cybercriminal infrastructure. How do they protect malicious activities, and how do cybercriminals use them to stay in business?

Read Article
サイバー犯罪アンダーグラウンド
Commodified Cybercrime Infrastructure: Exploring the Underground Services Market for Cybercriminals

The provision of services, as well as the way criminals operate in the underground, have gone through many changes over the years to cater to the market’s different infrastructure demands.

Read Article
サイバー犯罪 フィッシングとBEC ソーシャルエンジニアリング
New Bait Used in Instagram Profile Hacking Scheme

Hackers spread messages supposedly sent from Instagram Help Center claiming that the user's account is at risk of being deleted.

Read Article