Trend Micro Research : Latest News

Agenda Ransomware Deploys Linux Variant on Windows Systems Through Remote Management Tools and BYOVD Techniques

Agenda Ransomware Deploys Linux Variant on Windows Systems Through Remote Management Tools and BYOVD Techniques 2025-10-23 at 21:13 By Trend™ Research identified a sophisticated Agenda ransomware attack that deployed a Linux variant on Windows systems. This cross-platform execution can make detection challenging for enterprises. This article is an excerpt from Trend Micro Research, News and […]

Agenda Ransomware Deploys Linux Variant on Windows Systems Through Remote Management Tools and BYOVD Techniques Read More »

Operation Zero Disco: Attackers Exploit Cisco SNMP Vulnerability to Deploy Rootkits

Operation Zero Disco: Attackers Exploit Cisco SNMP Vulnerability to Deploy Rootkits 2025-10-15 at 23:22 By Trend™ Research has uncovered an attack campaign exploiting the Cisco SNMP vulnerability CVE-2025-20352, allowing remote code execution and rootkit deployment on unprotected devices, with impacts observed on Cisco 9400, 9300, and legacy 3750G series. This article is an excerpt from

Operation Zero Disco: Attackers Exploit Cisco SNMP Vulnerability to Deploy Rootkits Read More »

RondoDox: From Targeting Pwn2Own Vulnerabilities to Shotgunning Exploits

RondoDox: From Targeting Pwn2Own Vulnerabilities to Shotgunning Exploits 2025-10-09 at 15:01 By Trend™ Research and ZDI Threat Hunters have identified a large-scale RondoDox botnet campaign exploiting over 50 vulnerabilities across more than 30 vendors, including flaws first seen in Pwn2Own contests. This article is an excerpt from Trend Micro Research, News and Perspectives View Original

RondoDox: From Targeting Pwn2Own Vulnerabilities to Shotgunning Exploits Read More »

Self-Propagating Malware Spreading Via WhatsApp, Targets Brazilian Users

Self-Propagating Malware Spreading Via WhatsApp, Targets Brazilian Users 2025-10-04 at 01:35 By Trend™ Research has identified an active campaign spreading via WhatsApp through a ZIP file attachment. When executed, the malware establishes persistence and hijacks the compromised WhatsApp account to send copies of itself to the victim’s contacts. This article is an excerpt from Trend

Self-Propagating Malware Spreading Via WhatsApp, Targets Brazilian Users Read More »

New LockBit 5.0 Targets Windows, Linux, ESXi

New LockBit 5.0 Targets Windows, Linux, ESXi 2025-09-25 at 21:26 By Trend™ Research analyzed source binaries from the latest activity from notorious LockBit ransomware with their 5.0 version that exhibits advanced obfuscation, anti-analysis techniques, and seamless cross-platform capabilities for Windows, Linux, and ESXi systems. This article is an excerpt from Trend Micro Research, News and

New LockBit 5.0 Targets Windows, Linux, ESXi Read More »

What We Know About the NPM Supply Chain Attack

What We Know About the NPM Supply Chain Attack 2025-09-18 at 13:34 By Trend™ Research outlines the critical details behind the ongoing NPM supply chain attack and offers essential steps to stay protected against potential compromise. This article is an excerpt from Trend Micro Research, News and Perspectives View Original Source

What We Know About the NPM Supply Chain Attack Read More »

Gunra Ransomware Group Unveils Efficient Linux Variant

Gunra Ransomware Group Unveils Efficient Linux Variant 2025-07-29 at 15:02 By This blog discusses how Gunra ransomware’s new Linux variant accelerates and customizes encryption, expanding the group’s reach with advanced cross-platform tactics. This article is an excerpt from Trend Micro Research, News and Perspectives View Original Source

Gunra Ransomware Group Unveils Efficient Linux Variant Read More »

AI Dilemma: Emerging Tech as Cyber Risk Escalates

AI Dilemma: Emerging Tech as Cyber Risk Escalates 2025-07-04 at 07:17 By As AI adoption accelerates, businesses face mounting cyber threats—and urgent choices about secure implementation This article is an excerpt from Trend Micro Research, News and Perspectives View Original Source

AI Dilemma: Emerging Tech as Cyber Risk Escalates Read More »

Trend Joins NVIDIA to Secure AI Infrastructure with NVIDIA

Trend Joins NVIDIA to Secure AI Infrastructure with NVIDIA 2025-05-19 at 06:03 By Together, we are focused on securing the full AI lifecycle—from development and training to deployment and inference—across cloud, data center, and AI factories. This article is an excerpt from Trend Micro Research, News and Perspectives View Original Source

Trend Joins NVIDIA to Secure AI Infrastructure with NVIDIA Read More »

Cybertron Reshapes AI Security as “Cyber Brain” Grows

Cybertron Reshapes AI Security as “Cyber Brain” Grows 2025-03-27 at 03:02 By Previously exclusive to Trend Vision One customers, select Trend Cybertron models, datasets and agents are now available via open-source. Build advanced security solutions and join us in developing the next generation of AI security technology. This article is an excerpt from Trend Micro

Cybertron Reshapes AI Security as “Cyber Brain” Grows Read More »

Black Basta and Cactus Ransomware Groups Add BackConnect Malware to Their Arsenal

Black Basta and Cactus Ransomware Groups Add BackConnect Malware to Their Arsenal 2025-03-03 at 11:24 By In this blog entry, we discuss how the Black Basta and Cactus ransomware groups utilized the BackConnect malware to maintain persistent control and exfiltrate sensitive data from compromised machines. This article is an excerpt from Trend Micro Research, News

Black Basta and Cactus Ransomware Groups Add BackConnect Malware to Their Arsenal Read More »

Earth Preta Mixes Legitimate and Malicious Components to Sidestep Detection

Earth Preta Mixes Legitimate and Malicious Components to Sidestep Detection 2025-02-18 at 03:03 By Our Threat Hunting team discusses Earth Preta’s latest technique, in which the APT group leverages MAVInject and Setup Factory to deploy payloads, bypass ESET antivirus, and maintain control over compromised systems. This article is an excerpt from Trend Micro Research, News

Earth Preta Mixes Legitimate and Malicious Components to Sidestep Detection Read More »

Vishing via Microsoft Teams Facilitates DarkGate Malware Intrusion

Vishing via Microsoft Teams Facilitates DarkGate Malware Intrusion 2024-12-13 at 10:04 By In this blog entry, we discuss a social engineering attack that tricked the victim into installing a remote access tool, triggering DarkGate malware activities and an attempted C&C connection. This article is an excerpt from Trend Micro Research, News and Perspectives View Original

Vishing via Microsoft Teams Facilitates DarkGate Malware Intrusion Read More »

INTERPOL & Trend’s Fight Against Cybercrime

INTERPOL & Trend’s Fight Against Cybercrime 2024-12-12 at 02:51 By Trend threat intelligence and training were crucial to the success of two major policing operations in 2024 This article is an excerpt from Trend Micro Research, News and Perspectives View Original Source

INTERPOL & Trend’s Fight Against Cybercrime Read More »

AI Pulse: The Good from AI and the Promise of Agentic

AI Pulse: The Good from AI and the Promise of Agentic 2024-12-03 at 03:54 By The perils of AI get a lot of airtime, but what are the upsides? This issue of AI Pulse looks at some of the good AI can bring, from strengthening cybersecurity to driving health breakthroughs—and how the coming wave of

AI Pulse: The Good from AI and the Promise of Agentic Read More »

Game of Emperor: Unveiling Long Term Earth Estries Cyber Intrusions

Game of Emperor: Unveiling Long Term Earth Estries Cyber Intrusions 2024-11-25 at 10:35 By Since 2023, APT group Earth Estries has aggressively targeted key industries globally with sophisticated techniques and new backdoors, like GHOSTSPIDER and MASOL RAT, for prolonged espionage operations. This article is an excerpt from Trend Micro Research, News and Perspectives View Original

Game of Emperor: Unveiling Long Term Earth Estries Cyber Intrusions Read More »

Trend Micro and Japanese Partners Reveal Hidden Connections Among SEO Malware Operations

Trend Micro and Japanese Partners Reveal Hidden Connections Among SEO Malware Operations 2024-11-11 at 11:18 By Trend Micro researchers, in collaboration with Japanese authorities, analyzed links between SEO malware families used in SEO poisoning attacks that lead users to fake shopping sites. This article is an excerpt from Trend Micro Research, News and Perspectives View

Trend Micro and Japanese Partners Reveal Hidden Connections Among SEO Malware Operations Read More »

Using gRPC and HTTP/2 for Cryptominer Deployment: An Unconventional Approach

Using gRPC and HTTP/2 for Cryptominer Deployment: An Unconventional Approach 2024-10-22 at 12:47 By In this blog entry, we discuss how malicious actors are exploiting Docker remote API servers via gRPC/h2c to deploy the cryptominer SRBMiner to facilitate their mining of XRP on Docker hosts. This article is an excerpt from Trend Micro Research, News

Using gRPC and HTTP/2 for Cryptominer Deployment: An Unconventional Approach Read More »

Teaming up with IBM to secure critical SAP workloads

Teaming up with IBM to secure critical SAP workloads 2024-07-16 at 17:17 By Trend Micro partners with IBM to offer advanced threat detection and response for protecting critical infrastructures running on IBM Power servers This article is an excerpt from Trend Micro Research, News and Perspectives View Original Source

Teaming up with IBM to secure critical SAP workloads Read More »

Attackers in Profile: menuPass and ALPHV/BlackCat

Attackers in Profile: menuPass and ALPHV/BlackCat 2024-06-26 at 18:46 By To test the effectiveness of managed services like our Trend Micro managed detection and response offering, MITRE Engenuity™ combined the tools, techniques, and practices of two globally notorious bad actors: menuPass and ALPHV/BlackCat. This blog tells the story of why they were chosen and what

Attackers in Profile: menuPass and ALPHV/BlackCat Read More »

Scroll to Top