❌

Normal view

There are new articles available, click to refresh the page.
Before yesterdayIT Security

Architectural intent is the cornerstone for the future of software security

2 September 2026 at 07:58
With agentic AI further boosting productivity, human code review becomes a serious bottleneck. Developers need to move upstream, establishing the ground rules to ensure that AI plays by the rules. No matter how drastically artificial intelligence has changed the way software is created, human developers are still indispensable to the software development process. But the [...]

There is no Zero Trust in Zero Trust

2 September 2026 at 04:27
In January, the Cloud Security Alliance asked security professionals how they handle the identities on which their AI systems run. Fewer than a quarter of organizations had a documented, formally adopted policy for creating or removing one. More than 16% do not track when a new identity is created at all. Those identities hold tokens [...]

Walking the AI Security and ROI Tightrope

By: Joe Logan
17 August 2026 at 11:26
Organisations across every sector are accelerating their adoption of generative AI, driven by board-level expectations for rapid innovation and measurable business value. Yet the same boards are equally insistent that AI initiatives must not compromise security, privacy, or regulatory compliance, and not lead to runaway cost.Β  This dual mandate has placed CIOs and security leaders [...]

Fake evidence: How generative AI is changing fraud capabilities

14 August 2026 at 09:17
Scams are evolving with technology. Generative AI is a game changer for scammers and has been blamed for the rise in increasingly sophisticated phishing campaigns. It is also enabling scammers to add credibility to their schemes by providing a quick, cheap, and easy way to create fake websites, videos, documents, and photographs. Tasks that once [...]

Expert panel: AI is writing the code. Who is defending it?

31 July 2026 at 05:56
AI is changing the way software is being developed. From generating code, helping developers make sense of new frameworks, reviewing pull requests, and even suggesting solutions for existing vulnerabilities, AI is playing an increasingly active role in the software development process. There is an upside here, too. AI is speeding up development, eliminating redundant efforts, [...]

Tracking Over 35,000 Fake Sites in the 2026 World Cup Scam Wave

28 July 2026 at 20:00
Between January and June 2026, TrendAIβ„’ tracked more than 35,000 fake sites exploiting the 2026 FIFA World Cup, spanning counterfeit merchandise shops, cloned ticket pages, and bogus free-streaming sites, which together drew roughly 1.48 million visits from Japan.

The Signs Were There: What the First Autonomous Ransomware Case Confirms

23 July 2026 at 20:00
An AI agent has run a ransomware intrusion on its own for the first time, from break-in to data destruction. The autonomous attacks TrendAIβ„’ Research predicted are beginning to arrive, and defending against them shifts from blocking known indicators to detecting behavior.

13M+ Emails Sent in Tech Support Scam Targeting Users, Organizations in Japan

22 July 2026 at 20:00
We analyzed a sustained tech support scam campaign that sent more than 13 million emails to Japanese addresses, with workplace-themed lures suggesting a possible expansion toward enterprise targets.

Inside the OpenAI – Hugging Face Incident: The AI Breach With No Human Attacker Behind It

OpenAI’s own models broke out of a test sandbox and into Hugging Face’s servers to solve an evaluation, with no human attacker involved. The incident showed how keeping agentic AI safe now depends on how it’s contained, not just on how it’s trained.

Federal Agencies Warn of Ongoing PLC Exploitation Against Critical U.S. Infrastructure

22 July 2026 at 20:00
TrendAIβ„’ Research breaks down what changed in CISA’s updated advisory on an ongoing PLC exploitation, why this activity might be more dangerous than a similar campaign in 2023, and how organizations can take action now to protect themselves.

Device Code Phishing: Turning a Convenience Feature Into an MFA Bypass

Device code phishing abuses a legitimate authentication feature designed for devices with limited input capabilities. This article breaks down how the technique works, examines a recent observed case, and outlines the layered security measures organizations can implement.

TONResolver RAT Abuses TON Blockchain to Target Japan's Hotel Industry

By: Yuya Sato
28 June 2026 at 20:00
In this blog entry, TrendAIβ„’ Research examines a wave of phishing emails observed in May 2026 that targeted Japanese accommodation facilities using Booking.com, detailing the victims, attack techniques used, and characteristics of the malware involved.

❌
❌