Skip to main content

TrendAI™ 深入研究

火花

Featured Articles

Critical Infrastructure Under Threat: How Frontier AI Changes the Risk Equation
AIOT & critical infrastructure

Critical Infrastructure Under Threat: How Frontier AI Changes the Risk Equation

The critical systems we can’t afford to lose are the same ones attackers are racing to target. With a new generation of AI-augmented cyber threats, what used to be weeks of warning can collapse into mere hours. What is the current state of the threat landscape for essential industries, and what can organizations do to fortify their defenses? Uncover this and more in our report.

Read article
AISoftware supply chainZero trust
The Road to Agentic AI: Navigating Architecture, Threats, and Solutions

As agentic AI systems grow increasingly complex, it becomes clear that this class of applications relies on a multi-layered architecture. Trying to chart such architecture reveals several security risks that could plague each layer. This article investigates the possible scenarios and offers actionable insights to secure each layer and combat such threats.

Read Article
AILLMsCyber crime
Exploiting Trust in Open-Source AI: The Hidden Supply Chain Risk No One Is Watching

As open-source AI models become foundational to digital infrastructure, hidden backdoors and tampered supply chains pose a growing, under-recognized threat that traditional security tools can fail to detect.

Read Article
Exploits & Zero-DaysAIZero trust
MCP Security: Network-Exposed Servers Are Backdoors to Your Private Data

Exposed MCP servers pose a risk for organizations utilizing them. Our research examined the types of concerns that emerge and how to keep systems safe through immediate and extended measures.

Read Article
AIDeepfakesPhishing & BEC
Deepfake It ‘til You Make It: A Comprehensive View of the New AI Criminal Toolset

This report takes a comprehensive look at how deepfakes are used to support criminal business processes, what are the toolkits criminals are exploiting to power their deepfake creation, and what the deepfake underground looks like.

Read Article
ASM ASRMCyber crime
Proactive Security: The Role of Exposure Management and Detection-Response Capability

Cyberattacks are growing increasingly sophisticated and frequent, which is why security strategies focused solely on detection and response are no longer sufficient. This reality brings renewed attention to the importance of identifying and mitigating cyber risks before incidents occur.

Read Article
AILLMs
The Road to Agentic AI: Defining a New Paradigm for Technology and Cybersecurity

Our latest research provides a framework for understanding agentic AI systems, outlines their core characteristics, and examines the security implications surrounding their use.

Read Article
AILLMsSoftware supply chain
Slopsquatting: When AI Agents Hallucinate Malicious Packages

Our research examines how AI coding assistants can hallucinate plausible but non-existent package names—therefore enabling slopsquatting attacks—while also providing practical defense strategies that organizations can implement to secure their development pipelines

Read Article
AIExploits & Zero-Days
Unveiling AI Agent Vulnerabilities Part V: Securing LLM Services

To conclude our series on agentic AI, this article examines emerging vulnerabilities that threaten AI agents, focusing on providing proactive security recommendations on areas such as code execution, data exfiltration, and database access.

Read Article
Cyber crimeExploits & Zero-DaysBotnets
The Rise of Residential Proxies as a Cybercrime Enabler

This research discusses how residential proxies help cybercriminals bypass antifraud and IT security systems, and how vulnerabilities in the IoT supply chain are exploited where Android-based devices are shipped pre-infected.

Read Article
AIExploits & Zero-Days
Unveiling AI Agent Vulnerabilities Part IV: Database Access Vulnerabilities

How can attackers exploit weaknesses in database-enabled AI agents? This research explores how SQL generation vulnerabilities, stored prompt injection, and vector store poisoning can be weaponized by attackers for fraudulent activities.

Read Article