โŒ

Normal view

There are new articles available, click to refresh the page.
Before yesterdayTrend Micro Research News

Your 100 Billion Parameter Behemoth is a Liability

15 January 2026 at 19:00
The "bigger is better" era of AI is hitting a wall. We are in an LLM bubble, characterized by ruinous inference costs and diminishing returns. The future belongs to Agentic AI powered by specialized Small Language Models (SLMs). Think of it as a shift from hiring a single expensive genius to running a highly efficient digital factory. Itโ€™s cheaper, faster, and frankly, the only way to make agents work at scale.

CVE-2025-55182: React2Shell Analysis, Proof-of-Concept Chaos, and In-the-Wild Exploitation

CVE-2025-55182 is a CVSS 10.0 pre-authentication RCE affecting React Server Components. Amid the flood of fake proof-of-concept exploits, scanners, exploits, and widespread misconceptions, this technical analysis intends to cut through the noise.

Introducing ร†SIR: Finding Zero-Day Vulnerabilities at the Speed of AI

14 January 2026 at 19:00
TrendAIโ„ขโ€™s ร†SIR platform combines AI automation with expert oversight to discover zero-day vulnerabilities in AI infrastructure โ€“ 21 CVEs across NVIDIA, Tencent, and MLflow since mid-2025.

Key Insights on SHADOW-AETHER-015 and Earth Preta from the 2025 MITRE ATT&CK Evaluation with TrendAI Vision Oneโ„ข

12 January 2026 at 19:00
This blog discusses notable modern TTPs observed from SHADOW-AETHER-015 and Earth Preta, from TrendAIโ„ข Research monitoring and TrendAI Vision Oneโ„ข intelligence. These findings support the performance of TrendAIโ„ข in the 2025 MITRE ATT&CK Evaluations.

Analyzing a Multi-Stage AsyncRAT Campaign via Managed Detection and Response

Threat actors exploited Cloudflare's free-tier infrastructure and legitimate Python environments to deploy the AsyncRAT remote access trojan, demonstrating advanced evasion techniques that abuse trusted cloud services for malicious operations.

What Cyber Defenders Really Think About AI Risk

17 December 2025 at 19:00
Learn how Trend Micro's 2025 Trend Micro Defenders Survey Report highlights current AI-related cybersecurity priorities and where security professionals use AI to their advantage.

Cyber Risk Management: Defenders Tell It Like It Is

14 December 2025 at 19:00
Based on more than 3,000 responses from cybersecurity professionals in nearly 90 countries, our Trend Micro Defenders Survey Report 2025 shines a bright light on the current state of cyber risk management. From the impact of cloud and AI on IT environments to top technical and human challenges, this yearโ€™s findings have a lot to say about the pressures security teams are under and what organizations are doing to tighten their grip on cyber risk.

SHADOW-VOID-042 Targets Multiple Industries with Void Rabisu-like Tactics

In November, a targeted spear-phishing campaign was observed using Trend Micro-themed lures against various industries, but this was quickly detected and thwarted by the Trend Vision Oneโ„ข platform.

Redefining Enterprise Defense in the Era of AI-Led Cyberattacks

13 November 2025 at 19:00
More cybercriminals are turning to using autonomous AI tools to upgrade their attacks, as exemplified by the recent utilization of Anthropicโ€™s Claude Code, prompting an urgent need for enterprises to adopt agentic AI-driven security platforms and proactive defenses to counter AI-related threats.

AI-Automated Threat Hunting Brings GhostPenguin Out of the Shadows

7 December 2025 at 19:00
In this blog entry, Trendโ„ข Research provides a comprehensive breakdown of GhostPenguin, a previously undocumented Linux backdoor with low detection rates that was discovered through AI-powered threat hunting and in-depth malware analysis.

Critical React Server Components Vulnerability CVE-2025-55182: What Security Teams Need to Know

4 December 2025 at 19:00
CVE-2025-55182 is a critical (CVSS 10.0) pre-authentication remote code execution vulnerability affecting React Server Components used in React.js, Next.js, and related frameworks (see the context section for a more exhaustive list of affected frameworks).

Project View: A New Era of Prioritized and Actionable Cloud Security

3 December 2025 at 19:00
In today's cloud-first world, security teams face an overwhelming flood of alerts, fragmented visibility, and reactive workflows. The complexity of modern cloud environmentsโ€”spanning multi-cloud deployments, ephemeral assets, and decentralized ownershipโ€”demands a new approach to risk management.

โŒ
โŒ