• Trend Micro
  • About TrendLabs Security Intelligence Blog
Search:
  • Home
  • Categories
    • Ransomware
    • Vulnerabilities
    • Exploits
    • Targeted Attacks
    • Deep Web
    • Mobile
    • Internet of Things
    • Malware
    • Bad Sites
    • Spam
    • Botnets
    • Social
    • Open source
Home   »   Archives for December 2019

Looking into Attacks and Techniques Used Against WordPress Sites

  • Posted on:December 23, 2019 at 5:07 am
  • Posted in:Vulnerabilities
  • Author:
    Trend Micro
0

This blog post lists different kinds of attacks against WordPress, by way of payload examples we observed in the wild, and how attacks have used hacked admin access and API, Alfa-Shell deployment, and SEO poisoning to take advantage of vulnerable sites.

Read More
Tags: Alfa-ShellAPIcmsContent Management SystemSEO poisoning

Why Running a Privileged Container in Docker Is a Bad Idea

  • Posted on:December 20, 2019 at 7:08 am
  • Posted in:Cloud
  • Author:
    Trend Micro
0

In this blog post, we will explore how running a privileged yet unsecure container may allow cybercriminals to gain a backdoor in an organization’s system.

Read More
Tags: Container SecurityDockerPrivileged Container

DDoS Attacks and IoT Exploits: New Activity from Momentum Botnet

  • Posted on:December 16, 2019 at 5:31 am
  • Posted in:Botnets, Exploits, Internet of Things
  • Author:
    Trend Micro
0

We found new details on the tools and techniques the Momentum botnet is currently using to compromise devices and perform distributed denial-of-service (DDoS) attacks, and propagate with numerous exploits.

Read More
Tags: botnetIOTMomentumrouterVulnerabilities

More than a Dozen Obfuscated APT33 Botnets Used for Extreme Narrow Targeting

  • Posted on:December 12, 2019 at 8:00 am
  • Posted in:Botnets, Targeted Attacks
  • Author:
    Trend Micro
0

The threat group APT33 is known to target the oil and aviation industries aggressively. Our recent findings show that the group uses about a dozen live Command and Control (C&C) servers for extremely narrow targeted malware campaigns against organizations in the Middle East, the U.S., and Asia.

Read More
Tags: APTAPT33botnetphishingVPN

(Almost) Hollow and Innocent: Monero Miner Remains Undetected via Process Hollowing

  • Posted on:December 12, 2019 at 5:00 am
  • Posted in:Bad Sites, Malware
  • Author:
    Trend Micro
0

Cryptocurrencies’ values are increasing again, which may explain why the number of stealthy techniques to deliver them have also increased this year. We found another campaign using process hollowing and a dropper component to evade detection and analysis, and can potentially be used for other malware payloads.

Read More
Tags: cryptocurrencycryptominerMoneroprocess holllowing
Page 1 of 212

Security Predictions for 2020

  • Cybersecurity in 2020 will be viewed through many lenses — from differing attacker motivations and cybercriminal arsenal to technological developments and global threat intelligence — only so defenders can keep up with the broad range of threats.
    Read our security predictions for 2020.

Business Process Compromise

  • Attackers are starting to invest in long-term operations that target specific processes enterprises rely on. They scout for vulnerable practices, susceptible systems and operational loopholes that they can leverage or abuse. To learn more, read our Security 101: Business Process Compromise.

Popular Posts

Sorry. No data so far.

Stay Updated

  • Home and Home Office
  • |
  • For Business
  • |
  • Security Intelligence
  • |
  • About Trend Micro
  • Asia Pacific Region (APAC): Australia / New Zealand, 中国, 日本, 대한민국, 台灣
  • Latin America Region (LAR): Brasil, México
  • North America Region (NABU): United States, Canada
  • Europe, Middle East, & Africa Region (EMEA): France, Deutschland / Österreich / Schweiz, Italia, Россия, España, United Kingdom / Ireland
  • Privacy Statement
  • Legal Policies
  • Copyright © Trend Micro Incorporated. All rights reserved.