Recent Advisories

Severity ID Title Vendor Product Date Type
NONE TRENDMICROBLOG:...

InstallFix and Claude Code: How Fake Install Pages Lead to Real Compromise_TRENDMICROBLOG:FF36F7E2408BBA9C80EEE66C62D048EB

Targeting multiple industries worldwide, the InstallFix campaign uses fake Claude AI installer pages to trick users into running malware that colle...

N/A N/A TRENDMICROBLOG
NONE TRENDMICROBLOG:...

Quasar Linux (QLNX) – A Silent Foothold in the Supply Chain: Inside a Full-Featured Linux RAT With Rootkit, PAM Backdoor, Credential Harvesting Capabilities_TRENDMICROBLOG:EC7FF1909183A7DA70A1515A2F663FA4

TrendAI™ Research breaks down Quasar Linux (QLNX), a previously undocumented sophisticated Linux RAT with low detection rates. In this blog, we exa...

N/A N/A TRENDMICROBLOG
NONE TRENDMICROBLOG:...

Kuse Web App Abused to Host Phishing Document_TRENDMICROBLOG:52BBCDECFDD8A85D94C7E9FC4CB7A6B2

Bad actors took advantage of the legitimate name and services of Kuse, a popular AI-based app designed for workplaces. The attackers exploited the ...

N/A N/A TRENDMICROBLOG
NONE TRENDMICROBLOG:...

Void Dokkaebi Uses Fake Job Interview Lure to Spread Malware via Code Repositories_TRENDMICROBLOG:E4658308C58C2BE2B1FC5468E944E2FB

Our research on Void Dokkaebi’s operations uncovered a campaign that turns infected developer repositories into malware delivery channels. By sprea...

N/A N/A TRENDMICROBLOG
NONE TRENDMICROBLOG:...

U.S. Public Sector Under Siege: Threat Intelligence for Q1 2026_TRENDMICROBLOG:43372F03B97452F49F8ABDCF2280D492

The first quarter of 2026 has reinforced a hard truth: U.S. government agencies and educational institutions are operating in the most hostile cybe...

N/A N/A TRENDMICROBLOG
NONE TRENDMICROBLOG:...

Spam Campaign Abuses Atlassian Jira, Targets Government and Corporate Entities_TRENDMICROBLOG:EDD16C744BCF42E9F794B2E1348D0D96

We uncover how a campaign used Atlassian Jira Cloud to launch automated and targeted spam campaigns, exploiting trusted SaaS workflows to bypass se...

N/A N/A TRENDMICROBLOG
NONE TRENDMICROBLOG:...

U.S. Public Sector Under Siege_TRENDMICROBLOG:D4EDFC4EAB7E500B495392E611DE2C09

Discover why Government and Education must prioritize Cyber Risk Management.

N/A N/A TRENDMICROBLOG
NONE TRENDMICROBLOG:...

Pwn2Own: Researchers Earn $1 Million for 76 Zero-Days_TRENDMICROBLOG:14778FDC48EECBA4D86C959636DF11C8

Discover how TrendAI Zero Day Initiative (ZDI) identified critical vulnerabilities across connected vehicles, EV chargers, and automotive systems.

N/A N/A TRENDMICROBLOG
NONE TRENDMICROBLOG:...

Embracing Choice in Cybersecurity: TrendAI Vision One™ and SentinelOne Integration_TRENDMICROBLOG:82F608571FBB76555A79FFD7115E3F59

Discover how the TrendAI Vision One and SentinelOne integration exemplifies our commitment to endpoint flexibility.

N/A N/A TRENDMICROBLOG
NONE TRENDMICROBLOG:...

PeckBirdy: A Versatile Script Framework for LOLBins Exploitation Used by China-aligned Threat Groups_TRENDMICROBLOG:3A98EE5F91DFA4F1E28CFD29D7F1A32D

PeckBirdy is a sophisticated JScript-based C&C framework used by China-aligned APT groups to exploit LOLBins across multiple environments, deliveri...

N/A N/A TRENDMICROBLOG