logo

TrendAI Security Blog

ID: 2d72cf33-69bd-5cc5-89a5-41c165bae893

STIX ID: identity--2d72cf33-69bd-5cc5-89a5-41c165bae893

Feed Type: skeleton

Earliest post: -

Latest post: -

The TrendAI Security Blog provides expert research, news, and practical guidance on emerging cyber threats, vulnerabilities, AI security, and enterprise defense.

01/01/2020
08/23/2026
Title Date Published Describes IncidentAuthorVisible
TrendAI™ Intelligence Aids Law Enforcement Arrest of Tycoon 2FA Operators2026-08-03TrueTrue
Malicious Cyber Activity Targeting US Water Utilities: What Operators Need To Know2026-07-31TrueTrue
Inside the OpenAI – Hugging Face Incident: The AI Breach With No Human Attacker Behind It2026-07-31TrueTrue
How TrendAI™ Research Helped Close an Open Redirect in Dify's Post-Login Flow2026-07-29TrueTrue
Prompting the Payload: How an npm Supply Chain Attack Delivers the RedC2 AI-Powered Linux Implant2026-06-01TrueTrue
Living Off Trusted Software: ScreenConnect Abuse Across Phishing, Search, and RMM Chains2026-05-26TrueTrue
Axios NPM Package Compromised: Supply Chain Attack Hits JavaScript HTTP Client with 100M+ Weekly Downloads2026-03-30TrueTrue
TeamPCP’s Telnyx Attack Marks a Shift in Tactics Beyond LiteLLM2026-03-27TrueTrue
Weaponizing Trust Signals: Claude Code Lures and GitHub Release Payloads2026-03-26TrueTrue
Your AI Stack Just Handed Over Your Root Keys: Inside the litellm PyPI Breach2026-03-24TrueTrue
Copyright Lures Mask a Multi‑Stage PureLog Stealer Attack on Key Industries2026-02-06TrueTrue
Pawn Storm Campaign Deploys PRISMEX, Targets Government and Critical Infrastructure Entities2026-01-12TrueTrue
Europol, Microsoft, TrendAI™ and Collaborators Halt Tycoon 2FA Operations2026-01-01TrueTrue
Malicious OpenClaw Skills Used to Distribute Atomic macOS Stealer2026-01-01TrueTrue
Beauty Camera Apps Send Users Porn, Collects Pictures2026-01-01TrueTrue
Bashlite Updated with Mining and Backdoor Commands2026-01-01TrueTrue
Fake Banking App Found on Google Play Used in SMiShing2026-01-01TrueTrue
EvilAI Operators Use AI-Generated Code and Fake Apps for Far-Reaching Attacks2026-01-01TrueTrue
PeckBirdy: A Versatile Script Framework for LOLBins Exploitation Used by China-aligned Threat Groups2026-01-01TrueTrue
New LockBit 5.0 Targets Windows, Linux, ESXi2026-01-01TrueTrue
#NoFilter: Exposing the Tactics of Instagram Account Hackers2026-01-01TrueTrue
Self-Propagating Malware Spreading Via WhatsApp, Targets Brazilian Users2026-01-01TrueTrue
When Tokenizers Drift: Hidden Costs and Security Risks in LLM Deployments2026-01-01TrueTrue
Hacking Tools, Survey Scam Target Facebook Users2026-01-01TrueTrue
CISOs in a Pinch: A Security Analysis of OpenClaw2026-01-01TrueTrue
Fake CAPTCHA Attacks Deploy Infostealers and RATs in a Multistage Payload Chain2026-01-01TrueTrue
Google’s DoubleClick Abused to Deliver Miners2026-01-01TrueTrue
Invisible Prompt Injection: A Threat to AI Security2026-01-01TrueTrue
Lemon Group’s Cybercriminal Businesses Built on Preinfected Devices2026-01-01TrueTrue
Ransomware Actor Abuses Genshin Impact Anti-Cheat Driver to Kill Antivirus2026-01-01TrueTrue
Shifts in the Underground: The Impact of Water Kurita’s (Lumma Stealer) Doxxing2026-01-01TrueTrue
Unraveling Water Saci's New Multi-Format, AI-Enhanced Attacks Propagated via WhatsApp2026-01-01TrueTrue
Operation Zero Disco: Attackers Exploit Cisco SNMP Vulnerability to Deploy Rootkits2026-01-01TrueTrue
RondoDox: From Targeting Pwn2Own Vulnerabilities to Shotgunning Exploits2026-01-01TrueTrue
The Rise of Collaborative Tactics Among China-aligned Cyber Espionage Campaigns2026-01-01TrueTrue
Game of Emperor: Unveiling Long Term Earth Estries Cyber Intrusions2026-01-01TrueTrue
Agenda Ransomware Deploys Linux Variant on Windows Systems Through Remote Management Tools and BYOVD Techniques2026-01-01TrueTrue
AI-Automated Threat Hunting Brings GhostPenguin Out of the Shadows2026-01-01TrueTrue
Analyzing a a Multi-Stage AsyncRAT Campaign via Managed Detection and Response2026-01-01TrueTrue
Fast, Broad, and Elusive: How Vidar Stealer 2.0 Upgrades Infostealer Capabilities2026-01-01TrueTrue
PureRAT Campaign Targets Job Seekers, Abuses Foxit PDF Reader for DLL Side-loading2026-01-01TrueTrue
Deepfake CFO Video Calls Result in $25MM in Damages2026-01-01TrueTrue
Critical React Server Components Vulnerability CVE-2025-55182: What Security Teams Need to Know2026-01-01TrueTrue
From Extension to Infection: An In-Depth Analysis of the Evelyn Stealer Campaign Targeting Software Developers2026-01-01TrueTrue
Introducing ÆSIR: Finding Zero-Day Vulnerabilities at the Speed of AI2026-01-01TrueTrue
ZDI-CAN-25373: Windows Shortcut Exploit Abused as Zero-Day in Widespread APT Campaigns2026-01-01TrueTrue
Back to Business: Lumma Stealer Returns with Stealthier Methods2026-01-01TrueTrue
CVE-2025-55182: React2Shell Analysis, Proof-of-Concept Chaos, and In-the-Wild Exploitation2025-12-03TrueTrue
What We Know About the NPM Supply Chain Attack2025-01-01TrueTrue

1–49 of 49