Recent Advisories

Severity ID Title Vendor Product Date Type
NONE TRENDMICROBLOG:...

CNAPP is the Solution to Multi-cloud Flexibility_TRENDMICROBLOG:8075075AB20A76716B27ED46CCCDE149

Cloud-native application protection platform (CNAPP) not only helps organizations protect, but offers the flexibility of multi-cloud.

N/A N/A TRENDMICROBLOG
NONE TRENDMICROBLOG:...

Domino Effect: How One Vendor’s AI App Breach Toppled Giants_TRENDMICROBLOG:BF6E4B3D0D8105DA13A5FD42A9B0E785

A single AI chatbot breach at Salesloft-Drift exposed data from 700+ companies, including security leaders. The attack shows how AI integrations ex...

N/A N/A TRENDMICROBLOG
NONE TRENDMICROBLOG:...

New LockBit 5.0 Targets Windows, Linux, ESXi_TRENDMICROBLOG:FEB6995F8E9E699D75B6141CDB94BB11

Trend™ Research analyzed source binaries from the latest activity from notorious LockBit ransomware with their 5.0 version that exhibits advanced o...

N/A N/A TRENDMICROBLOG
NONE TRENDMICROBLOG:...

This Is How Your LLM Gets Compromised_TRENDMICROBLOG:D4EAA1EA6272F0C9CE913574A443BC76

Poisoned data. Malicious LoRAs. Trojan model files. AI attacks are stealthier than ever—often invisible until it’s too late. Here’s how to catch th...

N/A N/A TRENDMICROBLOG
NONE TRENDMICROBLOG:...

AI-Powered App Exposes User Data, Creates Risk of Supply Chain Attacks_TRENDMICROBLOG:88BC13BEAB3845EE004EDC737EF1FA66

Trend™ Research’s analysis of Wondershare RepairIt reveals how the AI-driven app exposed sensitive user data due to unsecure cloud storage practice...

N/A N/A TRENDMICROBLOG
NONE TRENDMICROBLOG:...

How AI-Native Development Platforms Enable Fake Captcha Pages_TRENDMICROBLOG:9F83812946ACC02B9E70C86A20218893

Cybercriminals are abusing AI-native platforms like Vercel, Netlify, and Lovable to host fake captcha pages that deceive users, bypass detection, a...

N/A N/A TRENDMICROBLOG
NONE TRENDMICROBLOG:...

What We Know About the NPM Supply Chain Attack_TRENDMICROBLOG:5FA61016929500986492E22B73AC23A1

Trend™ Research outlines the critical details behind the ongoing NPM supply chain attack and offers essential steps to stay protected against poten...

N/A N/A TRENDMICROBLOG
NONE TRENDMICROBLOG:...

EvilAI Operators Use AI-Generated Code and Fake Apps for Far-Reaching Attacks_TRENDMICROBLOG:AB2EAC758ED9D8187F101B89EC47B30D

Combining AI-generated code and social engineering, EvilAI operators are executing a rapidly expanding campaign, disguising their malware as legiti...

N/A N/A TRENDMICROBLOG
NONE TRENDMICROBLOG:...

What’s Your Cybersecurity Maturity?_TRENDMICROBLOG:09C0C2B0FA46F0A7D45EE4A253568D0C

This blog post looks at four key milestones along the cybersecurity maturity journey and poses some questions you can ask to determine the stage of...

N/A N/A TRENDMICROBLOG
NONE TRENDMICROBLOG:...

Unmasking The Gentlemen Ransomware: Tactics, Techniques, and Procedures Revealed_TRENDMICROBLOG:6A69E1640A2FAB0A6797B6EC5E02690D

An analysis of the Gentlemen ransomware group, which employs advanced, adaptive tactics, techniques, and procedure to target critical industries wo...

N/A N/A TRENDMICROBLOG