セキュリティ101:仮想パッチ
パッチが適用されていない、または脆弱性を抱えるアプリケーションや組織のITインフラは、どのようなリスクにさらされるのでしょうか。本記事では、企業の脆弱性管理とパッチ管理にまつわる課題を仮想パッチがどのように解決するのかを解説します。
【イベント】TrendAI™ Spark 2026 開催
AIセキュリティの最前線を探るグローバルイベント「Spark 2026」を全国5都市で開催します。

パッチが適用されていない、または脆弱性を抱えるアプリケーションや組織のITインフラは、どのようなリスクにさらされるのでしょうか。本記事では、企業の脆弱性管理とパッチ管理にまつわる課題を仮想パッチがどのように解決するのかを解説します。
国家との関連が疑われる攻撃者は、攻撃チェーンのあらゆる段階にAIを組み込みながら、防御側がすでに信頼しているサービスの内側に自らのインフラを潜ませています。本レポートでは、こうした活動を突き動かす地政学的背景と、防御側が次に優先すべき対策を読み解きます。
ソブリンAIでは、セキュリティスタックのあらゆるレイヤーの責任が運用者の手に委ねられます。本記事では、この転換に伴う脅威と、国家が保有するAIシステムの信頼性を保つための実践的なコントロールをあわせて解説します。
TrendAI™ Researchが米国のデータセンター周辺にあるICSプロトコルを調査したところ、冷却、電力、環境設備といった重要インフラを制御する数千台の脆弱なデバイスが見つかりました。運用効率を重視し、セキュリティを前提とせずに設計されたこれらのシステムは、公開インターネットからアクセス可能な状態にありました。
Can we fix the lag between patch releases and actual implementation? Current events reveal that patching should be made a definite priority. We provide a guide on how to manage patching for enterprises and large organizations.
KOVTER is one example of a constantly evolving malware. Initially starting out as a police ransomware, it eventually evolved into a much more effective and evasive fileless malware. Here is a closer look at KOVTER, and how organizations can lessen its impact.
As cryptocurrencies like bitcoin are more widely used, so will the threats that cybercriminals use to abuse it. Here’s a closer look at cryptocurrency-mining malware—their emergence in the threat landscape, impact, and some countermeasures against them.
The Petya ransomware family has reemerged, becoming one of the most impactful yet. Is it similar to WannaCry? Does it have a kill switch? Here are some frequently asked questions about the threat.
Identity theft is currently a gold mine for cybercriminals—one that reached an all-time high in 2016, with up to $16 billion worth of losses caused by fraud and identity theft. But what exactly happens with the stolen information?
A South Korean web hosting company was hit by a Linux version of the Erebus ransomware. Here’s what you need to know about the threat and what sysadmins can do to defend against it.
This research paper explores the tools and methods used to spread fake news and manipulate public opinion: the services that enable them, their appearance on social media sites, and the motivations behind these activities.
Filess malware that abuse Windows’ PowerShell are now increasingly becoming more common—from ransomware, click-fraud malware to Trojan downloaders. Here’s a closer look on how to mitigate these threats.
A complete discussion of the different vulnerability categories, including case studies of vulnerable SCADA HMIs. The paper also provides a guide for vulnerability researchers, as well as vendors on quick and efficient bug discovery.
As home routers add more features, securing them becomes more difficult. End users should be aware of the effects of compromise, and how to protect their home routers.