Truth in IT
    • Sign In
    • Register
        • Videos
        • Channels
        • Pages
        • Galleries
        • News
        • Events
        • All
Truth in IT Truth in IT
  • Data Management ▼
    • Converged Infrastructure
    • DevOps
    • Networking
    • Storage
    • Virtualization
  • Cybersecurity ▼
    • Application Security
    • Backup & Recovery
    • Data Security
    • Identity & Access Management (IAM)
    • Zero Trust
  • Cloud ▼
    • Hybrid Cloud
    • Private Cloud
    • Public Cloud
  • Webinar Library
  • TiPs

Inside the Trend Micro AI Security Report: Exposed Inference, Prompt Leaks, and Deepfake Abuse

Truth in IT
11/19/2025
59
0 (0%)
Share
  • Comments
  • Download
  • Transcript
Report Like Favorite
  • Share/Embed
  • Email
Link
Embed

Transcript


AI Security Trends 1H 2025: Attacks on AI Infrastructure and the Road Ahead

This episode of Trend Talks Threat Research, hosted by Jon Clay, VP of Threat Intelligence at Trend Micro, spotlights the newly released “Trend Micro State of AI Security Report: 1H 2025.” The discussion matters for IT and security teams because it details real-world attacks against AI infrastructure, evolving LLM threats, and how adversaries operationalize AI.

The report’s first section focuses on current attacks against AI infrastructure. Trend Micro’s Zero Day Initiative included AI infrastructure for the first time at its May Berlin hacking event, uncovering critical issues across the stack. Notable findings include exploitable flaws in KronDB, NVIDIA Triton Inference Server, Redis, and the NVIDIA Container Toolkit—paired with a worrying surge in unauthenticated internet exposure.

Exposed AI Inference and MLOps Systems

Post-event internet scanning found thousands of AI-related systems exposed without authentication. The count grew from roughly 3,000 to more than 10,000 servers, underscoring poor access controls and rushed deployments in AI/ML pipelines.

LLM Application Risks and Prompt-Leak Evolution

The report analyzes attacks on complex, LLM-based applications, tracking prompt injection and prompt-leak techniques across popular models. Comparative tests showed varying resilience; for example, Mistral models exhibited higher susceptibility to prompt leaks in Trend Micro’s assessment.

Criminal Adoption: Deepfakes and Off-the-Shelf Tools

Adversaries increasingly leverage legitimate, commercially available AI apps—particularly for deepfake audio/video—rather than building bespoke tools. This lowers barriers for fraud, social engineering, and KYC bypass schemes.

Policy, GenAI Complexity, and Vendor Posture

The report looks ahead to EU policy momentum and the rising complexity of agentic/genetic AI systems. It also outlines vendor responses, including Trend Micro’s research, product posture, and links to first-half content for deeper technical context.

Key Takeaways

  • AI infrastructure is a prime target; inference servers and MLOps components are being actively probed and exploited.
  • Internet-exposed AI services without authentication are increasing, amplifying organizational risk.
  • LLM prompt-leak and injection techniques are evolving; model resilience varies significantly.
  • Criminals prefer legitimate deepfake tools, accelerating fraud and KYC bypass attempts.
  • EU policy shifts and agentic AI complexity will shape near-term security requirements.

For IT and security leaders, the message is clear: treat AI infrastructure as Tier-0 assets, harden exposure, validate LLM application security, and prepare for agentic AI and regulatory changes that will redefine cloud and data security controls.

Categories:
  • » Cybersecurity Webinars » Application Security
  • » Cybersecurity Webinars » Zero Trust
  • » Cybersecurity Webinars » Data Security
  • » Cybersecurity Webinars » Identity & Access Management (IAM)
  • » Webinar Library » Trend Micro
Channels:
News:
Events:
Tags:
  • trendmicro
  • security
  • ai
  • 2025
Show more Show less

Browse videos

  • Related
  • Featured
  • By date
  • Most viewed
  • Top rated
  •  

              Video's comments: Inside the Trend Micro AI Security Report: Exposed Inference, Prompt Leaks, and Deepfake Abuse

              Upcoming Webinar Calendar

              • 01/20/2026
                01:00 PM
                01/20/2026
                Beyond The Basics: IT Service Delivery Workflows That Close the Efficiency Gap
                https://www.truthinit.com/index.php/channel/1756/beyond-the-basics-it-service-delivery-workflows-that-close-the-efficiency-gap/
              • 01/22/2026
                01:00 PM
                01/22/2026
                Netskope: Securing Access: Go Beyond VPN and NAC to Universal ZTNA
                https://www.truthinit.com/index.php/channel/1668/netskope-securing-access-go-beyond-vpn-and-nac-to-universal-ztna/
              • 01/27/2026
                01:00 PM
                01/27/2026
                AI & Quantum Attacks Exposed: Your Survival Guide for the Next-Gen Threat Era
                https://www.truthinit.com/index.php/channel/1759/ai-quantum-attacks-exposed-your-survival-guide-for-the-next-gen-threat-era/
              • 01/29/2026
                10:00 AM
                01/29/2026
                Preparing Your Cybersecurity Strategy for the Challenges of 2026
                https://www.truthinit.com/index.php/channel/1705/preparing-your-cybersecurity-strategy-for-the-challenges-of-2026/
              • 02/03/2026
                01:00 PM
                02/03/2026
                Evolution of Cloud Adaptability and AI Performance
                https://www.truthinit.com/index.php/channel/1760/evolution-of-cloud-adaptability-and-ai-performance/

              Upcoming Spotlight Events

              • Jan
                20

                Beyond The Basics: IT Service Delivery Workflows That Close the Efficiency Gap

                01/20/202601:00 PM ET
                • Jan
                  22

                  Netskope: Securing Access: Go Beyond VPN and NAC to Universal ZTNA

                  01/22/202601:00 PM ET
                  More events

                  Upcoming Industry Events

                  • Jan
                    29

                    Preparing Your Cybersecurity Strategy for the Challenges of 2026

                    01/29/202610:00 AM ET
                    More events

                    Recent Spotlight Events

                    • Dec
                      10

                      The Next Generation of Managed Data Security Services

                      12/10/202501:00 PM ET
                      • Dec
                        02

                        The Invisible Threat: How Polymorphic Malware is Outsmarting Your Email Security

                        12/02/202501:00 PM ET
                        • Nov
                          20

                          Rethinking Hybrid Access: Securing Users, Vendors, and Infrastructure in the Zero Trust Era

                          11/20/202501:00 PM ET
                          More events

                          Recent Industry Events

                          • Dec
                            18

                            Insight into IconAds, SlopAds, and AI Threats on the 2026 Horizon

                            12/18/202501:00 PM ET
                            • Dec
                              16

                              HUMAN Dialogue: Discover the True Insights Behind Page-Level Performance Intelligence

                              12/16/202501:00 PM ET
                              • Dec
                                11

                                Partner Tech Insights: Bridge Gaps and Enhance Revenue with Druva’s Microsoft Expansion.

                                12/11/202501:00 PM ET
                                More events
                                Truth in IT
                                • Sponsor
                                • About Us
                                • Terms of Service
                                • Privacy Policy
                                • Contact Us
                                • Preference Management
                                Desktop version
                                Standard version