Skip to main content

TrendAI™ Deep Research

spark

注目のリサーチ記事

Critical Infrastructure Under Threat: How Frontier AI Changes the Risk Equation
AIOT & critical infrastructure

産業インフラを脅かすもの:フロンティアAIが変えるリスクの構図

失うわけにはいかない重要なシステムが、攻撃者の標的になっています。AIを利用した新世代のサイバー脅威によって、かつては数週間あった対処の猶予が、わずか数時間に縮まる可能性があります。社会を支える産業の脅威は今どのような状況にあり、組織はどうすれば防御を強化できるのでしょうか。本レポートでは、これらの問いを検討します。

Read article
Rethinking the External Attack Surface: Managing the Growing Risk of Open Cyber-Physical Data
IoTとスマートデバイスASM ASRM
外部アタックサーフェスの再考:公開サイバー・フィジカルデータがもたらす増大するリスクへの対応

中国との関連が疑われるオペレーショナルリレーボックス(ORB)インフラストラクチャが、公開されたセンサーデータを大規模に収集しているものの、多くの組織はその実態を把握できていません。本レポートでは、これらのORBがデータ収集などの目的で公開テレメトリをどのように利用し得るかを掘り下げます。

Fyodor Yarochkin, Vladimir Kropotov, Robert McArdle
Read article
An industrial worker inspecting a warehouse
ハクティビズムランサムウェアと恐喝
産業インフラを標的とする犯罪経済の全体像

TrendAI™ Researchは、工場、公益事業、エネルギー企業へのアクセスが売買され、武器化されるフォーラム、マーケットプレイス、Telegramチャネルの内部を調査しました。2年分のデータを精査した結果、金銭目的のアクセスブローカーやランサムウェアグループが、国家との関連が疑われるハクティビストと同じ場で活動し、同じ侵入経路と同じ海賊版トレーニングを共有し、場合によっては人員までも共有しているアンダーグラウンドの実態が明らかになりました。

Mayra Rosario Fuentes, Stephen Hilt, Numaan Huq
Read article
Security 101: Virtual Patching
エクスプロイトとゼロデイ
セキュリティ101:仮想パッチ

パッチが適用されていない、または脆弱性を抱えるアプリケーションや組織のITインフラは、どのようなリスクにさらされるのでしょうか。本記事では、企業の脆弱性管理とパッチ管理にまつわる課題を仮想パッチがどのように解決するのかを解説します。

TrendAI™ Research
Read article
Enterprise Network Protection: Protecting Data through Network Segmentation

An enterprise guide on network segmentation; how it works to secure large enterprise networks, why it's needed, and examples of some of the most widely used network models for different industries.

Read Article
RaaS(Ransomware as a Service)
Ransomware-as-a-Service: Ransomware Operators Find Ways to Bring in Business

Cybercriminals are taking cues from legitimate enterprises and focusing on growing their operations. Different variations of ransomware-as-a-service show the evolving nature of the business.

Read Article
サイバー犯罪ランサムウェアと恐喝
Ransomware 101: What, How, and Why

This infographic shows how ransomware has evolved, how big the problem has become, and ways to avoid being a ransomware victim.

Read Article
サイバー犯罪フィッシングとBEC
Billion-Dollar Scams: The Numbers Behind Business Email Compromise

Business Email Compromise schemes are one of the biggest threats to companies to date. One carefully crafted email sent to the right person can cost a company millions of dollars. How is it done and what makes it so effective?

Read Article
マルウェア
Marcher Android Banking Malware Now Targeting UK Customers

Developers of the Android-based banking trojan Marcher updated the malware, adding major banks in United Kingdom to its list of targets.

Read Article
フィッシングとBEC
Austrian Aeronautics Company Loses Over €42 Million to BEC Scam

Austria-based Fischer Advanced Composite Components AG (FACC), a major designer and manufacturer of aircraft components and systems, falls prey to a business email compromise (BEC) scheme that cost the company over 42 million euros in losses.

Read Article
サイバー犯罪
Keeping Digital Assets Safe: The Need for Data Classification

This primer discusses the importance of data classification, and how organizations can implement these strategies to reduce the effects should a data breach occur.

Read Article
サイバー犯罪アンダーグラウンド
2012 Linkedin Breach had 117 Million Emails and Passwords Stolen, Not 6.5M

Long time users of Linkedin users may very well need to change their passwords once more as a cybercriminal puts the email addresses and passwords of 117 million users up for sale.

Read Article
ランサムウェアと恐喝
CryptXXX, 7ev3n Ransomware Get Major Updates

Newly-discovered ransomware strains, CryptXXX and 7ev3n, get major updates from malware authors.

Read Article
Dark Motives Online: An Analysis of Overlapping Technologies Used by Cybercriminals and Terrorist Organizations

Research on the common technologies used by cybercriminals and terrorists to benefit their cause, from the services they abuse to the tools they’ve homebrewed to streamline activities.

Read Article