-
Trustwave Enhances its OT Security Services Portfolio
Recognizing the need to better protect organizations that rely on operational technology (OT), Trustwave is advancing its OT security services portfolio. Go to Source
-
Travelling Through the Dark Web: Answering 6 Questions About Dark Web “Travel Agencies”
Uncover how dark web “travel agencies” operate—from booking flights and hotels with stolen credentials to building customer-facing services that mimic legitimate platforms. Learn who uses dark web travel services and how unsuspecting consumers may get lured in through Telegram and other underground channels. Explore how the hospitality industry can detect and combat dark web fraud…
-
Trustwave MDR Accelerates Automotive Company’s Cybersecurity Posture
Discover how Trustwave Managed Detection and Response (MDR) solution helped an automotive manufacturer meet urgent cybersecurity and compliance demands. Learn how 24/7 MDR services and Co-Managed SIEM improved threat detection, response time, and log management. See why Trustwave’s MDR expertise empowers lean IT teams to strengthen security posture without adding internal burden. For many organizations, especially…
-
Ensuring Compliance with DORA: How Trustwave Secures Your Databases and Meets Regulatory Standards
Achieve DORA Compliance with automated database security controls, audit-ready reports, and continuous compliance monitoring. Streamline Vulnerability Management by identifying, prioritizing, and remediating database risks across hybrid environments. Enhance Database Security with Trustwave’s enterprise-grade solutions, built to protect sensitive financial data and ensure operational resilience. The EU’s Digital Operational Resilience Act (DORA) establishes a unified regulatory…
-
Trustwave Executive Business Reviews Turn Security Updates into Board Level Conversations
Discover how Trustwave’s new Executive Business Reviews (EBRs) transform routine updates into powerful, strategic discussions. Learn how EBRs shift the focus from raw data to real-world risk reduction, operational resilience, and cost efficiency for your organization. See how these quarterly 90-minute meetings provide customized threat intelligence and actionable recommendations to fortify your security posture. Obtain…
-
Trustwave’s David Broggy Honored for the Third Time with Microsoft’s Most Valuable Professional Award
For the third consecutive year, Microsoft has awarded Trustwave’s David Broggy, Senior Solutions Architect, Implementation Services, its Most Valuable Professional (MVP) Award. Go to Source
-
In-the-wild Exploitation of CVE-2025-53770 and CVE-2025-53771: Technical Details and Mitigation Strategies
Two critical zero-day vulnerabilities in the Microsoft SharePoint Server environment, CVE-2025-53770 (9.8 CVSS score) and CVE-2025-53771 (6.5 CVSS score), are being actively exploited by threat actors to compromise vulnerable on-premises SharePoint servers. Go to Source
-
Using SQLmap to Dig for Sensitive Data in SQL Databases
In our latest report Data Pirates’ Toolkit (Leveraging SQLmap for Unearthing Digital Gold), we take a comprehensive look at a tried-and-tested cyberattack methodology that threat actors can use to unlock sensitive and critical data from unsecured databases: SQL injection (SQLi) attacks. Go to Source
-
No Tell Motel: Trustwave Exposes the Secrets of Dark Web Travel Agencies
Dark web travel agencies remain a persistent niche in the cybercrime ecosystem. SpiderLabs reviewed the operation of four dark web travel agencies. Dark web travel agencies were not spotted targeting specific hotel chains or airlines; instead, they exploit popular booking aggregators to fulfill client requests. Dark web travel agencies are adaptive and continuously seek new…
-
Unmasking Malicious APKs: Android Malware Blending Click Fraud and Credential Theft
Malicious APKs (Android Package Kit files) continue to serve as one of the most persistent and adaptable delivery mechanisms in mobile threat campaigns. Threat actors routinely exploit social engineering and off-market distribution to bypass conventional security controls and capitalize on user trust to steal a variety of data, such as log in credentials. Go to Source