<?xml version="1.0" encoding="UTF-8"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>TrendAI™ 資安部落格</title><description>Latest cybersecurity insights and research from TrendAI</description><link>https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/</link><language>zh-tw</language><atom:link href="https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/rss.xml" rel="self" type="application/rss+xml"/><item><title>Earth Sirrush: A Russia-Aligned Intrusion Set With 4 Years of Evolving Espionage Tooling </title><link>https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/earth-sirrush-russia-aligned-intrusion-set-4-years-evolving-espionage-tooling</link><guid isPermaLink="true">https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/earth-sirrush-russia-aligned-intrusion-set-4-years-evolving-espionage-tooling</guid><description>Earth Sirrush has repeatedly changed its tools and delivery methods, but TrendAI™ Research reveals how shared code, reused artifacts, and infrastructure patterns continue to expose the links between its campaigns.</description><pubDate>Mon, 05 Oct 2026 07:23:00 GMT</pubDate><dc:creator>Hiroyuki Kakara</dc:creator><category>APTs</category><category>Government</category><enclosure url="https://cdn.sanity.io/images/ch6z6vqj/production/75ef1811e9055ffd6bf148ae80c578459bb882ec-2000x804.png" length="3294474" type="image/png"/></item><item><title>AI and the Evolving Threat Landscape: What Public Sector CISOs Need to Know Now</title><link>https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/ai-evolving-threat-landscape-what-public-sector-cisos-need-to-know-now</link><guid isPermaLink="true">https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/ai-evolving-threat-landscape-what-public-sector-cisos-need-to-know-now</guid><description>Public sector CISOs need to grapple with challenges brought about by AI threats: up to 3,600 AI CVEs in 2026, autonomous ransomware, and critical infrastructure risk.</description><pubDate>Mon, 05 Oct 2026 04:00:55 GMT</pubDate><dc:creator>Jon Clay, VP of Threat Intelligence, TrendAI™</dc:creator><category>Experts&apos; view (Expert perspective)</category><category>AI</category><category>Government</category><enclosure url="https://cdn.sanity.io/images/ch6z6vqj/production/f245059b7e0b53fc8d8e21ca1cb27c80d021af60-1600x1067.jpg" length="197682" type="image/jpeg"/></item><item><title>Assess Your AI Security Maturity Through Visibility, Observability, Ownership, and Governance </title><link>https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/assess-ai-security-maturity-visibility-observability-ownership-governance</link><guid isPermaLink="true">https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/assess-ai-security-maturity-visibility-observability-ownership-governance</guid><description>Three questions can help reveal your AI security maturity. Hear expert perspectives and explore the pathway to governance in a series of short video conversations.</description><pubDate>Fri, 02 Oct 2026 07:00:00 GMT</pubDate><dc:creator>Truman Coburn</dc:creator><category>AI</category><category>Technology, media, &amp; communications</category><category>Industrial &amp; energy</category><category>Financial services</category><category>Healthcare &amp; life sciences</category><category>General markets</category><category>Government</category><category>Experts&apos; view (Expert perspective)</category><enclosure url="https://cdn.sanity.io/images/ch6z6vqj/production/52fdb57d5ac2bfa1a263e657d7f3255dd0cf8092-1600x1065.jpg" length="277313" type="image/jpeg"/></item><item><title>ShinyHunters Returns to PeopleSoft With a One-Character WAF Bypass</title><link>https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/shinyhunters-peoplesoft-one-character-waf-bypass</link><guid isPermaLink="true">https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/shinyhunters-peoplesoft-one-character-waf-bypass</guid><description>ShinyHunters is once again exploiting a previously patched vulnerability in PeopleSoft, which we analyzed in June 2026.</description><pubDate>Thu, 01 Oct 2026 13:00:00 GMT</pubDate><dc:creator>TrendAI™ Research</dc:creator><category>Threat reports</category><category>General markets</category><category>Exploits &amp; Zero-Days</category><enclosure url="https://cdn.sanity.io/images/ch6z6vqj/production/bf71c523610d7fd03a0ece8ee1dccbfc2abc6580-1600x1068.jpg" length="183536" type="image/jpeg"/></item><item><title>超越模型對齊：保護 AI 代理的每一層</title><link>https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/beyond-model-alignment-securing-every-layer-of-the-ai-agent</link><guid isPermaLink="true">https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/beyond-model-alignment-securing-every-layer-of-the-ai-agent</guid><description>對齊可讓模型具備良好的意圖，卻無法保護 AI 代理在正式營運環境中使用的駕馭框架、工具和資料。真正的 AI 代理安全，需要對每一層進行治理，並透過代理無法關閉的機制，強制執行安全控管。</description><pubDate>Mon, 28 Sep 2026 02:56:00 GMT</pubDate><dc:creator>Rachel Jin</dc:creator><category>AI</category><category>General markets</category><category>Technology, media, &amp; communications</category><enclosure url="https://cdn.sanity.io/images/ch6z6vqj/production/37f682524ff7b318b7b1a3a82e48164a4456a3ce-2000x801.jpg" length="312392" type="image/jpeg"/></item><item><title>When Trust in AI Becomes an Attack Surface: Analyzing Prompt Injection, Model Theft, and Pipeline Poisoning</title><link>https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/when-trust-in-ai-becomes-an-attack-surface-analyzing-prompt-injection-model-theft-and-pipeline-poisoning</link><guid isPermaLink="true">https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/when-trust-in-ai-becomes-an-attack-surface-analyzing-prompt-injection-model-theft-and-pipeline-poisoning</guid><description>Our analysis shows how AI attacks are moving beyond malicious prompts into the tools, models, and pipelines organizations already trust, and the controls organizations can put in place to reduce their exposure.</description><pubDate>Thu, 24 Sep 2026 18:26:00 GMT</pubDate><dc:creator>Vladimir Kropotov</dc:creator><category>AI</category><category>Exploits &amp; Zero-Days</category><category>Technology, media, &amp; communications</category><enclosure url="https://cdn.sanity.io/images/ch6z6vqj/production/7716d8a004729129e92e4075486ac71ae6397a36-1920x800.jpg" length="664154" type="image/jpeg"/></item><item><title>AI Frontier Labs Can Slow Down. Defenders Can’t Afford To.</title><link>https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/ai-defenders-cannot-slow-down</link><guid isPermaLink="true">https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/ai-defenders-cannot-slow-down</guid><description>The AI Frontier pacing argument assumes enterprise risk comes from frontier models being too powerful or misaligned. But that argument assumes that if labs build safer models, enterprises will be safer. That&apos;s not exactly how it works. AI frontier labs can slow down, but defenders can’t afford to. </description><pubDate>Wed, 23 Sep 2026 22:00:43 GMT</pubDate><dc:creator>Rachel Jin</dc:creator><category>AI</category><enclosure url="https://cdn.sanity.io/images/ch6z6vqj/production/4823e6b9b6ca2022043b83d487a5795e275b01e1-1920x800.jpg" length="571231" type="image/jpeg"/></item><item><title>Global Public Sector Under Siege: Threat Intelligence for Q2 2026</title><link>https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/global-public-sector-under-siege-threat-intelligence-for-q2-2026</link><guid isPermaLink="true">https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/global-public-sector-under-siege-threat-intelligence-for-q2-2026</guid><description>In the second quarter of 2026, threats to the public sector have become increasingly persistent: from AI-generated ransomware, nation-state espionage, supply chain attacks, and many more, critical institutions face a rapidly growing range of risks. </description><pubDate>Wed, 16 Sep 2026 17:01:00 GMT</pubDate><dc:creator>Jon Clay, VP of Threat Intelligence, TrendAI™</dc:creator><category>AI</category><category>Experts&apos; view (Expert perspective)</category><enclosure url="https://cdn.sanity.io/images/ch6z6vqj/production/5fe0635d68c8cc670ae179cc39fcfa488b4a7fba-1920x800.jpg" length="309147" type="image/jpeg"/></item><item><title>Zero Breaches Out of 50: TrendAI Vision One™ Endpoint Security Essentials Earns AV-Comparatives Certified Leader Status</title><link>https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/zero-breaches-out-of-50-trendaitm-vision-onetm-endpoint-security-essentials-earns-av-comparatives-certified-leader-status</link><guid isPermaLink="true">https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/zero-breaches-out-of-50-trendaitm-vision-onetm-endpoint-security-essentials-earns-av-comparatives-certified-leader-status</guid><pubDate>Tue, 15 Sep 2026 08:55:00 GMT</pubDate><dc:creator>Jay Yaneza</dc:creator><category>AI</category><category>Exploits &amp; Zero-Days</category><enclosure url="https://cdn.sanity.io/images/ch6z6vqj/production/0adcb99a32ce25ba376239cd8473126f83f72070-1920x800.jpg" length="361232" type="image/jpeg"/></item><item><title>The Boardroom Debate: How Cyber Risk Hits Your Bottom Line</title><link>https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/the-boardroom-debate-how-cyber-risk-hits-your-bottom-line</link><guid isPermaLink="true">https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/the-boardroom-debate-how-cyber-risk-hits-your-bottom-line</guid><description>You don’t need to be an expert to use cyber risk quantification. TrendAI™ automates data collection to deliver real-time financial risk insights and clear next steps for remediation.</description><pubDate>Fri, 11 Sep 2026 02:26:00 GMT</pubDate><dc:creator>Sanjana Sadh</dc:creator><category>Financial services</category><category>Healthcare &amp; life sciences</category><category>Technology, media, &amp; communications</category><enclosure url="https://cdn.sanity.io/images/ch6z6vqj/production/ecb1d06ff7a06fe01f59af44a4f52cfd48d94a73-2000x800.jpg" length="333933" type="image/jpeg"/></item><item><title>TrendAI™ Brings OpenAI&apos;s GPT Cyber Models Into the Race to Shrink Exposure Time to Zero</title><link>https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/trendai-brings-openai-daybreak-models-into-the-race-to-shrink-exposure-time-to-zero</link><guid isPermaLink="true">https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/trendai-brings-openai-daybreak-models-into-the-race-to-shrink-exposure-time-to-zero</guid><description>OpenAI’s GPT cyber models help TrendAI™ close the exposure window, from vulnerability to fix, faster than ever.</description><pubDate>Thu, 03 Sep 2026 02:59:00 GMT</pubDate><dc:creator>Rachel Jin</dc:creator><category>AI</category><enclosure url="https://cdn.sanity.io/images/ch6z6vqj/production/320708024b57bd0d019481b8c9df204da1716f89-2000x800.jpg" length="421239" type="image/jpeg"/></item><item><title>ATF Reports Breach After Qilin Leak Site Appearance: Insights from TrendAI™</title><link>https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/atf-reports-breach-after-qilin-leak-site-appearance-insights-from-trendaitm</link><guid isPermaLink="true">https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/atf-reports-breach-after-qilin-leak-site-appearance-insights-from-trendaitm</guid><description>The U.S. Bureau of Alcohol, Tobacco, Firearms and Explosives (ATF) has reportedly appeared on the Qilin ransomware group’s leak site. Explore how Qilin operates and what organizations can learn from its past tactics.</description><pubDate>Fri, 28 Aug 2026 14:18:00 GMT</pubDate><dc:creator>TrendAI™ Research</dc:creator><category>Cyber crime</category><category>Ransomware &amp; extortion</category><category>Ransomware as a Service (RaaS)</category><category>Cyber threats</category><category>Government</category><category>Research features</category><enclosure url="https://cdn.sanity.io/images/ch6z6vqj/production/925a27ba4ccf435a9aa79cc5241e62b58ccf8400-1920x800.jpg" length="164678" type="image/jpeg"/></item><item><title>Inside SHADOW-WATER-084: A Steganographic Loader-as-a-Service Delivering Remcos, LXBASE, and More</title><link>https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/inside-shadow-water-084-a-steganographic-loader-as-a-service-delivering-remcos-lxbase-and-more</link><guid isPermaLink="true">https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/inside-shadow-water-084-a-steganographic-loader-as-a-service-delivering-remcos-lxbase-and-more</guid><description>TrendAI™ Research tracked three campaigns that ship completely different decoy applications and unrelated payloads, all riding one shared toolkit. This analysis covers the full chain, from the pixel data that hides the first stage, through a flexible shared loader to deliver multiple payloads, revealing how adversaries are standardizing their delivery mechanisms.</description><pubDate>Thu, 27 Aug 2026 07:00:00 GMT</pubDate><dc:creator>Ahmed Mohamed Ibrahim</dc:creator><category>Malware</category><enclosure url="https://cdn.sanity.io/images/ch6z6vqj/production/619261f0ec529302404c5d906eacbb3ab41d3731-2000x800.jpg" length="187653" type="image/jpeg"/></item><item><title>TrendAI™ Advances Threat Hunting to Dynamic, Real-World Exploitation of AI Infrastructure</title><link>https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/trendai-advances-threat-hunting-to-dynamic-real-world-exploitation-of-ai-infrastructure</link><guid isPermaLink="true">https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/trendai-advances-threat-hunting-to-dynamic-real-world-exploitation-of-ai-infrastructure</guid><description>The new threat hunting component of the TrendAI™ agentic exploit-remediation engine, code name AESIR, extends visibility beyond vulnerability disclosure. Its first published investigation links over a year of honeypot data to the LF3 loader framework.</description><pubDate>Wed, 26 Aug 2026 14:00:00 GMT</pubDate><dc:creator>Deep Patel</dc:creator><category>AI</category><enclosure url="https://cdn.sanity.io/images/ch6z6vqj/production/6f4b1c654ac2857f543e7f88c450e815cab68bd2-2000x800.jpg" length="322968" type="image/jpeg"/></item><item><title>Ranked First on CyberGym: TrendAI™ Agentic Exploit-Remediation Engine Scores 97% on the Top Exploit Benchmark</title><link>https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/trendai-first-on-cybergym-top-exploit-benchmark</link><guid isPermaLink="true">https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/trendai-first-on-cybergym-top-exploit-benchmark</guid><description>The TrendAI™ agentic exploit-remediation engine, code name AESIR, ranks first on CyberGym at 97% — more than 12 points ahead of both GPT-5.6 Sol and Claude Mythos 5. AI system architecture beats raw model capability. </description><pubDate>Wed, 26 Aug 2026 14:00:00 GMT</pubDate><dc:creator>Peter Girnus</dc:creator><category>AI</category><category>Exploits &amp; Zero-Days</category><enclosure url="https://cdn.sanity.io/images/ch6z6vqj/production/0e8f99d426b7b4b7e72090c868dd52d2ce06ff44-1997x933.jpg" length="626810" type="image/jpeg"/></item><item><title>英國發電廠因網路攻擊而停擺：關鍵基礎設施營運單位及資安人員該知道些什麼?</title><link>https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/uk-power-facility-cyberattack-shutdown-what-critical-infrastructure-operators-and-defenders-need-to-know</link><guid isPermaLink="true">https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/uk-power-facility-cyberattack-shutdown-what-critical-infrastructure-operators-and-defenders-need-to-know</guid><description>2026 年 7 月，一份有關英國發電廠遭網路攻擊的報導顯示，即使是單一據點的營運中斷，也可能引發關於關鍵基礎設施韌性的廣泛討論。</description><pubDate>Mon, 24 Aug 2026 00:20:00 GMT</pubDate><dc:creator>TrendAI™ Research</dc:creator><category>Cyber risk</category><enclosure url="https://cdn.sanity.io/images/ch6z6vqj/production/ef9caa29738222bbdccac1550fe0821547d1965b-1920x800.jpg" length="389694" type="image/jpeg"/></item><item><title>The Architecture Behind $1B: How Customers Run TrendAI Vision One™ on AWS, and Secure Their AI Workloads </title><link>https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/the-architecture-behind-a-billion-dollars-how-customers-run-trendai-vision-one-on-aws-and-secure-their-ai-workloads</link><guid isPermaLink="true">https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/the-architecture-behind-a-billion-dollars-how-customers-run-trendai-vision-one-on-aws-and-secure-their-ai-workloads</guid><pubDate>Sun, 23 Aug 2026 20:03:00 GMT</pubDate><dc:creator>TrendAI™ Research</dc:creator><category>AI</category><category>Emerging technologies</category><enclosure url="https://cdn.sanity.io/images/ch6z6vqj/production/51f0738ad4bc89646f30097f868bb9d2b89c6d0e-1920x800.jpg" length="266280" type="image/jpeg"/></item><item><title>Prompting the Payload: How an npm Supply Chain Attack Delivers the RedC2 AI-Powered Linux Implant </title><link>https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/redc2-ai-powered-linux-implant</link><guid isPermaLink="true">https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/redc2-ai-powered-linux-implant</guid><description>TrendAI™ Research provides a comprehensive analysis of the RedC2 Linux Implant, a sophisticated threat recently discovered in the npm open-source ecosystem. </description><pubDate>Thu, 20 Aug 2026 04:13:00 GMT</pubDate><dc:creator>Aliakbar Zahravi</dc:creator><category>Cyber threats</category><enclosure url="https://cdn.sanity.io/images/ch6z6vqj/production/9bef4a0cc1a5003c1613d718699ca1859080153a-2000x797.jpg" length="408857" type="image/jpeg"/></item><item><title>Living Off Trusted Software: ScreenConnect Abuse Across Phishing, Search, and RMM Chains</title><link>https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/screenconnect-abuse</link><guid isPermaLink="true">https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/screenconnect-abuse</guid><description>In this blog entry, researchers at TrendAI Vision One™ Services – Managed Detection and Response (MDR) walk through how attackers deliver, install, and operate a reconfigured ScreenConnect client, and why it slips past defenses built to catch conventional malware.</description><pubDate>Mon, 17 Aug 2026 14:18:00 GMT</pubDate><dc:creator>Buddy Tancio</dc:creator><category>Malware</category><enclosure url="https://cdn.sanity.io/images/ch6z6vqj/production/ae1b8928ded84090ea1a07922c3aceef35e920f3-1920x800.jpg" length="778515" type="image/jpeg"/></item><item><title>不肖中間人 (AiTM) 網路釣魚如何避開多重認證 (MFA) 挾持 Microsoft 365 信箱從事變臉詐騙 (BEC)</title><link>https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/how-aitm-phishing-bypassed-mfa-to-hijack-a-microsoft-365-mailbox-in-bec-scheme</link><guid isPermaLink="true">https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/how-aitm-phishing-bypassed-mfa-to-hijack-a-microsoft-365-mailbox-in-bec-scheme</guid><description>點一下一個精心設計的誘餌，駭客就能拿到 Microsoft 365 連線階段權杖，這便足以讓駭客假冒廠商的名義變更其收款銀行資料。TrendAI Vision One™ Services – Managed Detection and Response (MDR) 追蹤了這起攻擊並找到了問題的源頭。</description><pubDate>Fri, 14 Aug 2026 07:00:09 GMT</pubDate><dc:creator>Jovit Samaniego</dc:creator><category>Phishing &amp; BEC</category><enclosure url="https://cdn.sanity.io/images/ch6z6vqj/production/65e18c0f6d9f28a40da5babf9f175da7fca5cbc5-1920x800.jpg" length="185492" type="image/jpeg"/></item><item><title>AI 的速度正在改變資安漏洞的情勢，但我們對 CISA KEV 的堅持不會改變</title><link>https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/cisa-kev-commitment-ai-vulnerability-management</link><guid isPermaLink="true">https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/cisa-kev-commitment-ai-vulnerability-management</guid><description>TrendAI™ 正進一步深度聚焦 CISA KEV (已知遭到攻擊的漏洞) 目錄，將它視為一種經過證實的活躍風險訊號。在 AI 的協助下，TrendAI™ 將 TrendAI™ ZDI 的研究、漏洞攻擊情資、曝險情況以及業務風險結合在一起，驅動 AI 輔助的持續性優先次序判斷，協助資安團隊做出更好的決策，更快採取行動。</description><pubDate>Thu, 06 Aug 2026 18:51:00 GMT</pubDate><dc:creator>Rachel Jin</dc:creator><category>AI</category><category>Exploits &amp; Zero-Days</category><enclosure url="https://cdn.sanity.io/images/ch6z6vqj/production/5ea2c64c126e983f7d30c60ac84c8b0c04c55c5e-976x533.jpg" length="99863" type="image/jpeg"/></item><item><title>TrendAI™ Research 如何協助解決 Dify 登入後流程中的開放式重導漏洞</title><link>https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/how-trendai-research-helped-close-an-open-redirect-in-difys-post-login-flow</link><guid isPermaLink="true">https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/how-trendai-research-helped-close-an-open-redirect-in-difys-post-login-flow</guid><description>TrendAI™ Research 在 Dify 的登入後流程中發現了一個可能讓剛通過認證的連線階段、權杖等等被轉交給駭客的開放式重導漏洞，並且與廠商合作，在漏洞細節公告之前將每一條登入途徑的漏洞都修正完成。</description><pubDate>Tue, 04 Aug 2026 07:05:00 GMT</pubDate><dc:creator>David Fiser</dc:creator><category>Exploits &amp; Zero-Days</category><enclosure url="https://cdn.sanity.io/images/ch6z6vqj/production/769cc630103b505682e65e2e444feebcc65bd57a-2000x800.jpg" length="280040" type="image/jpeg"/></item><item><title>TrendAI™ Intelligence 協助執法機關逮捕 Tycoon 2FA 集團成員</title><link>https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/trendaitm-intelligence-aids-law-enforcement-arrest-of-tycoon-2fa-operators</link><guid isPermaLink="true">https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/trendaitm-intelligence-aids-law-enforcement-arrest-of-tycoon-2fa-operators</guid><description>新加坡警察部隊 (SPF) 與巴基斯坦國家網路犯罪調查局 (NCCIA) 以及國際刑警組織 (INTERPOL) 密切合作，逮捕了兩名與 Tycoon 2FA 相關的人士，該網路釣魚集團所服務的對象犯罪足跡遍及四大洲。</description><pubDate>Tue, 04 Aug 2026 02:08:04 GMT</pubDate><dc:creator>Christopher Boyton</dc:creator><category>Cyber crime</category><enclosure url="https://cdn.sanity.io/images/ch6z6vqj/production/a55ca6e7a7d4a320b4d3bde2dfc8dd0500a0b258-2000x800.png" length="1562882" type="image/png"/></item><item><title>Malicious Cyber Activity Targeting US Water Utilities: What Operators Need To Know </title><link>https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/us-water-utilities-under-attack-what-operators-need-to-know</link><guid isPermaLink="true">https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/us-water-utilities-under-attack-what-operators-need-to-know</guid><description>Disruption reported across at least seven states, from equipment left accessible online. The issue is largely a matter of configuration and access control, and here&apos;s what to fix first. </description><pubDate>Mon, 03 Aug 2026 09:19:20 GMT</pubDate><dc:creator>TrendAI™ Research</dc:creator><category>OT &amp; critical infrastructure</category><category>MFA &amp; authentication</category><enclosure url="https://cdn.sanity.io/images/ch6z6vqj/production/6312f4996ac34226951f5cf8a38d65d9c876f694-1920x800.jpg" length="591604" type="image/jpeg"/></item><item><title>Open Secure AI Alliance 的重要性：開放前沿模型與靈活部署彈性</title><link>https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/open-secure-ai-alliance</link><guid isPermaLink="true">https://www.trendaisecurity.com/zh-tw/resources-insights/trendai-security-blog/open-secure-ai-alliance</guid><description>TrendAI 加入 NVIDIA 的行列成為 Open Secure AI Alliance (開放式安全 AI 聯盟) 的創始合作夥伴，致力提升開放式模型、框架與研究來強化資安防禦。</description><pubDate>Thu, 30 Jul 2026 05:32:00 GMT</pubDate><dc:creator>Rachel Jin</dc:creator><category>AI</category><enclosure url="https://cdn.sanity.io/images/ch6z6vqj/production/e5ee6b0858b8b748fd2065aaf2cd3617b6a85e32-1920x800.jpg" length="296247" type="image/jpeg"/></item></channel></rss>