Skip to main content

【イベント】TrendAI™ Spark 2026 開催

AIセキュリティの最前線を探るグローバルイベント「Spark 2026」を全国5都市で開催します。

TrendAI™ Deep Research

spark

注目のリサーチ記事

2026年上半期のAPT動向を分析: 「信頼」を武器化する攻撃者
APT
2026年上半期のAPT動向を分析: 「信頼」を武器化する攻撃者

国家との関連が疑われる攻撃者は、攻撃チェーンのあらゆる段階にAIを組み込みながら、防御側がすでに信頼しているサービスの内側に自らのインフラを潜ませています。本レポートでは、こうした活動を突き動かす地政学的背景と、防御側が次に優先すべき対策を読み解きます。

TrendAI™ Research
Read article
Expert data center IT technician upgrading hardware equipment
AI governance
ソブリンAIのセキュリティ確保:物理・ソフトウェア・モデルの各サプライチェーンにわたる実践的コントロール

ソブリンAIでは、セキュリティスタックのあらゆるレイヤーの責任が運用者の手に委ねられます。本記事では、この転換に伴う脅威と、国家が保有するAIシステムの信頼性を保つための実践的なコントロールをあわせて解説します。

Numaan Huq, David Girard
Read article
An Invisible Attack Surface: Thousands of Industrial Control Systems Exposed Near Data Centers
Cloud security
見えないアタックサーフェス:データセンター周辺で露出する数千台の産業制御システム

TrendAI™ Researchが米国のデータセンター周辺にあるICSプロトコルを調査したところ、冷却、電力、環境設備といった重要インフラを制御する数千台の脆弱なデバイスが見つかりました。運用効率を重視し、セキュリティを前提とせずに設計されたこれらのシステムは、公開インターネットからアクセス可能な状態にありました。

Stephen Hilt, Numaan Huq
Read article
Cloud security Devops
Guidance on Kubernetes Threat Modeling

We provide recommendations for cloud admins on how to formulate a security strategy when using Kubernetes for container orchestration.

Read Article
Cloud security エクスプロイトとゼロデイ
Exploring Common Threats to Cloud Security

As the adoption of cloud services grows, organizations need to be informed about how to secure their environment. Our research examines the common threats encountered in the cloud and provides insight on how organizations can better deal with them.

Read Article
Working From Home? Here’s What You Need for a Secure Setup

There has been an influx of employees signing in remotely to corporate networks and using cloud-based applications. But this shift could also open doors to security risks. Where should security fit in?

Read Article
Nefilim Ransomware Threatens to Expose Stolen Data

New ransomware variant Nefilim is distributed through exposed Remote Desktop Protocol (RDP) and threatens to release stolen data to the public.

Read Article
サイバー諜報活動
Probing Pawn Storm: Cyberespionage Campaign Through Scanning, Credential Phishing and More

The notorious threat group Pawn Storm has been known to target high-profile entities, from governments to media for years. This research paper looks into the ways the group compromised email addresses and servers to facilitate credential phishing attacks.

Read Article
サイバー犯罪 APT マルウェア
Operation DRBControl: Uncovering a Cyberespionage Campaign Targeting Gambling Companies in Southeast Asia

The DRBControl campaign attacks its targets using a variety of malware and techniques that coincide with those used in other known cyberespionage campaigns.

Read Article
フィッシングとBEC
Puerto Rico Loses Millions in Email Scam

The hacked email account of a finance employee was exploited to steal millions of dollars from the Puerto Rico government.

Read Article
Cloud security
Misconfigured AWS S3 Bucket Leaks 36,000 Inmate Records

Over 30K records of US inmates were inadvertently exposed through a leaky AWS S3 cloud storage bucket.

Read Article
IoTとスマートデバイス エクスプロイトとゼロデイ
Researchers Use Smart Light Bulbs to Infiltrate Networks

Researchers discovered a vulnerability in smart light bulbs that can allow hackers to install malware and infect other IoT devices.

Read Article
サイバー犯罪 サイバー犯罪アンダーグラウンド
Over 30 Million Stolen Credit Card Records Being Sold on the Dark Web

Cybercriminals were found selling over 30 million credit card details from around 40K U.S. states and 100 countries.

Read Article