Skip to main content

【イベント】TrendAI™ Spark 2026 開催

AIセキュリティの最前線を探るグローバルイベント「Spark 2026」を全国5都市で開催します。

TrendAI™ Deep Research

spark

注目のリサーチ記事

2026年上半期のAPT動向を分析: 「信頼」を武器化する攻撃者
APT
2026年上半期のAPT動向を分析: 「信頼」を武器化する攻撃者

国家との関連が疑われる攻撃者は、攻撃チェーンのあらゆる段階にAIを組み込みながら、防御側がすでに信頼しているサービスの内側に自らのインフラを潜ませています。本レポートでは、こうした活動を突き動かす地政学的背景と、防御側が次に優先すべき対策を読み解きます。

TrendAI™ Research
Read article
Expert data center IT technician upgrading hardware equipment
AI governance
ソブリンAIのセキュリティ確保:物理・ソフトウェア・モデルの各サプライチェーンにわたる実践的コントロール

ソブリンAIでは、セキュリティスタックのあらゆるレイヤーの責任が運用者の手に委ねられます。本記事では、この転換に伴う脅威と、国家が保有するAIシステムの信頼性を保つための実践的なコントロールをあわせて解説します。

Numaan Huq, David Girard
Read article
An Invisible Attack Surface: Thousands of Industrial Control Systems Exposed Near Data Centers
Cloud security
見えないアタックサーフェス:データセンター周辺で露出する数千台の産業制御システム

TrendAI™ Researchが米国のデータセンター周辺にあるICSプロトコルを調査したところ、冷却、電力、環境設備といった重要インフラを制御する数千台の脆弱なデバイスが見つかりました。運用効率を重視し、セキュリティを前提とせずに設計されたこれらのシステムは、公開インターネットからアクセス可能な状態にありました。

Stephen Hilt, Numaan Huq
Read article
IoTとスマートデバイス エクスプロイトとゼロデイ
Smart Yet Flawed: IoT Device Vulnerabilities Explained

Are your smart devices vulnerable? Here are common vulnerabilities found in IoT devices and how to secure against them.

Read Article
Cloud security
Securing the 4 Cs of Cloud-Native Systems: Cloud, Cluster, Container, and Code

Cloud-native security adopts the defense-in-depth approach and divides the security strategies utilized in cloud-native systems into four different layers: cloud, container, cluster, code.

Read Article
サイバー犯罪アンダーグラウンド
Trading in the Dark

An Investigation into the Current Condition of Underground Markets and Cybercriminal Forums

Read Article
Qakbot Resurges, Spreads through VBS Files

We have seen events that point to the resurgence of Qakbot, a multi-component, information-stealing threat first discovered in 2007.

Read Article
Cloud security
Cloud Security: Key Concepts, Threats, and Solutions

When it comes to cloud computing security, or simply, cloud security, what are the builders’ responsibilities? How can developers and administrators ensure cloud security? This primer discusses the key concepts of cloud security and which areas need to be protected using flexible and comprehensive security solutions. 

Read Article
OT & critical infrastructure IoTとスマートデバイス
Threats and Consequences: A Security Analysis of Smart Manufacturing Systems

Through a thorough analysis of an actual smart manufacturing environment, our in-depth security research explores several attack vectors that could be used by threat actors to launch unconventional attacks on smart manufacturing systems.

Read Article
暗号資産 Cloud security マルウェア
Coinminer, DDoS Bot Attack Docker Daemon Ports

A malicious cryptocurrency miner and Distributed Denial of Service (DDoS) bot that targets open Docker daemon ports.

Read Article
サイバー犯罪
Security 101: How Fileless Attacks Work and Persist in Systems

Many attackers are switching from file-based malware to memory-based attacks to improve their stealth. “Fileless,” “zero-footprint,” or “living off the land” threats use legitimate applications to carry out malicious activities.

Read Article
Loki Info Stealer Propagates through LZH Files

We recently acquired a spam sample that propagates the Loki infostealer through LZH compressed archive files.

Read Article
サイバー犯罪
Group Behind TrickBot Spreads Fileless BazarBackdoor

A campaign propagates a new malware named ‘BazarBackdoor’, a fileless backdoor reportedly created by the same threat actors behind TrickBot.

Read Article