生成AI利用時の脅威への気づきや、情報を確認して適切な相談先につながるという課題に対し、TrendLifeは家族全員が安心して利用できるよう設計された家族向けのAIサービス「Kaleida™」を提供しています。1つのアカウントで家族一人ひとりが専用のAIを利用でき、セキュリティレイヤーやプライバシーシールドなどの機能を通じて、AI利用時の脅威への気づきや安全な確認行動を支援します。詳細は こちら ...
9月リリースの第1弾として、Adobeは10件のセキュリティ情報を公開し、Adobe ColdFusion、Acrobat Reader、Commerce(セキュリティ情報2件)、Campaign Classic、Experience Manager、Photoshop、Illustrator、Animate、Adobe Photoshop Mobileに存在する172件の固有CVEに対処しました ...
A pre-authentication remote code execution (RCE) chain in Oracle PeopleSoft PeopleTools abuses the Integration Broker's PSIGW gateway to execute code inside the application server's Java virtual ...
Cybercriminals hijacked Google Ads searches for popular AI developer tools to funnel over 2,000 victims toward malicious download pages before quietly moving their operation onto claude.ai's own ...
Two separate Russia-aligned campaigns are still exploiting the WinRAR flaw CVE-2025-8088 against Ukrainian organizations nearly a year after it was patched, showing how unmanaged software keeps an ...
Exploits & Vulnerabilities Pwn2Own Berlin 2026: On the Ground With TrendAI™ ZDI's Biggest AI Showdown Yet 47 zero-days fell at Pwn2Own Berlin 2026 for US$1,298,250 in payouts. TrendAI™ was on the ...
In this blog entry, researchers from the TrendAI™ MDR team discuss how they mapped the full end-to-end operation of SHADOW-WATER-063’s Banana RAT banking malware by analyzing server-side artifacts and ...
TrendAI™ Research has identified two emerging threat campaigns—SHADOW-AETHER-040 and SHADOW-AETHER-064—that use agentic AI to drive intrusion operations against government and financial organizations ...
Our research on Void Dokkaebi’s operations uncovered a campaign that turns infected developer repositories into malware delivery channels. By spreading through trusted workflows, organizational ...
TeamPCP orchestrated one of the most sophisticated multi-ecosystem supply chain campaigns publicly documented to date. It cascaded through developer tooling and compromised LiteLLM and exposed how AI ...
Our analysis of an active KongTuke campaign deploying modeloRAT — malware capable of reconnaissance, command execution, and persistent access — through compromised WordPress sites and fake CAPTCHA ...