Skip to main content

TrendAI™ 深度研究

spark

Featured Articles

Cyber crime APTs Malware
Operation DRBControl: Uncovering a Cyberespionage Campaign Targeting Gambling Companies in Southeast Asia

The DRBControl campaign attacks its targets using a variety of malware and techniques that coincide with those used in other known cyberespionage campaigns.

Read Article
Cloud security
Misconfigured AWS S3 Bucket Leaks 36,000 Inmate Records

Over 30K records of US inmates were inadvertently exposed through a leaky AWS S3 cloud storage bucket.

Read Article
IoT & smart devices Exploits & Zero-Days
Researchers Use Smart Light Bulbs to Infiltrate Networks

Researchers discovered a vulnerability in smart light bulbs that can allow hackers to install malware and infect other IoT devices.

Read Article
Cyber crime Cybercriminal underground
Over 30 Million Stolen Credit Card Records Being Sold on the Dark Web

Cybercriminals were found selling over 30 million credit card details from around 40K U.S. states and 100 countries.

Read Article
Software supply chain
Unsecured AWS S3 Bucket Found Leaking Data of Over 30K Cannabis Dispensary Customers

An unsecured Amazon S3 bucket was found leaking the data of more than 30,000 individuals. It was discovered to have exposed 85,000 files that included records with sensitive personally identifiable information (PII).

Read Article
Cyber crime Exploits & Zero-Days
Malicious Script Plagues Over 2,000 WordPress Accounts, Redirects Visitors to Scam Sites

Over 2,000 WordPress sites were compromised by a malicious script that redirects visitors to scam sites, gains admin access, and installs fake plugins.

Read Article
Phishing & BEC
NetWire RAT Hidden in IMG Files Deployed in BEC Campaign

A recent BEC campaign targets organizations by sending them emails with IMG (disk imaging) file attachments hiding a NetWire remote access trojan.

Read Article
Cyber crime
Sextortion Scheme Claims Use of Home Cameras, Demands Bitcoin or Gift Card Payment

A new sextortion scheme threatens to expose nude videos supposedly captured via victims' mobile phones and home cameras.

Read Article
OT & critical infrastructure
Fake Company, Real Threats: Logs From a Smart Factory Honeypot

To determine threat actors' degree of knowledge in compromising a smart factory, we deployed our most elaborate honeypot to date. The incidents we observed show the kinds of attacks that can easily affect poorly secured manufacturing environments.

Read Article
Malware Botnets Cryptocurrency
Cryptocurrency Miner Uses Hacking Tool Haiduc and App Hider Xhide to Brute Force Machines and Servers

The cryptocurrency-miner, a multi-component threat comprised of different Perl and Bash scripts, miner binaries, the application hider Xhide, and a scanner tool, propagates by scanning vulnerable machines and brute-forcing (primarily default) credentials.

Read Article