Skip to main content

TrendAI™
Blog de Segurança

Blog de Segurança TrendAI

Blogs em Destaque

Deepfakes
A Deepfake Scammed a Bank out of $25M — Now What?

A finance worker in Hong Kong was tricked by a deepfake video conference. The future of defending against deepfakes is as much as human challenge as a technological one.

Read Article
Lemon Group’s Cybercriminal Businesses Built on Preinfected Devices

An overview of the Lemon Group’s use of preinfected mobile devices, and how this scheme is potentially being developed and expanded to other internet of things (IoT) devices. This research was presented in full at the Black Hat Asia 2023 Conference in Singapore in May 2023.

Read Article
New Golang Ransomware Agenda Customizes Attacks

A new piece of ransomware written in the Go language has been targeting healthcare and education enterprises in Asia and Africa. This ransomware is called Agenda and is customized per victim.

Read Article
Ransomware & extortion
Ransomware Actor Abuses Genshin Impact Anti-Cheat Driver to Kill Antivirus

We investigate mhyprot2.sys, a vulnerable anti-cheat driver for the popular role-playing game Genshin Impact. The driver is currently being abused by a ransomware actor to kill antivirus processes and services for mass-deploying ransomware.

Read Article
Analyzing The ForcedEntry Zero-Click iPhone Exploit Used By Pegasus

Citizen Lab has released a report on a new iPhone threat dubbed ForcedEntry. This zero-click exploit seems to be able to circumvent Apple's BlastDoor security, and allow attackers access to a device without user interaction.

Read Article
Cyber threats
#SemFiltro: Expondo as Táticas dos Hackers de Contas do Instagram

Quais táticas os hackers de contas do Instagram usam? O que esses cibercriminosos fazem com contas roubadas? Como os usuários podem proteger suas contas? Analisamos incidentes de hacking de contas do Instagram do ponto de vista de um pesquisador de segurança e compartilhamos recomendações para usuários do Instagram e de outras plataformas de mídia social.

Read Article
SHAREit Flaw Could Lead to Remote Code Execution

We discovered vulnerabilities in the SHAREit application. These vulnerabilities can be abused to leak a user’s sensitive data, execute arbitrary code, and possibly lead to remote code execution. The app has over 1 billion downloads.

Read Article
XCSSET Mac Malware: Infects Xcode Projects, Uses 0Days

Further investigation led us to a developer’s Xcode project that contained XCSSET source malware, which leads to a rabbit hole of malicious payloads. Most notable in our investigation is the discovery of two zero-day exploits.

Read Article
Malware
Bashlite Atualizado com Comandos de Mineração e Backdoor

Descobrimos um malware Bashlite atualizado, projetado para adicionar dispositivos infectados da internet das coisas a uma botnet de negação de serviço distribuída (DDoS). Com base no módulo Metasploit que explora, o malware tem como alvo dispositivos com a API WeMo UPnP.

Read Article
IoT & smart devices Malware
Beauty Camera Apps Send Users Porn, Collects Pictures

We discovered several beauty camera apps (detected as AndroidOS_BadCamera.HRX) on Google Play that are capable of accessing remote ad configuration servers that can be used for malicious purposes. Some of these have been downloaded millions of times.

Read Article