TrendAI and CleanDNS today announced a partnership that will take the fight against cybercriminal infrastructure to a new level. Traditionally, blocking malicious domains and websites has been a central part of the cyber defense arsenal. However, blocking the domains does not address the problem at its root, as the infrastructure remains accessible and is used in new attack attempts against the next victim.
Using agentic AI workflows and in-house ML models, TrendAI and CleanDNS have been able to identify malicious infrastructures linked to malware from a variety of cybercriminal groups in near real-time.
The focus of the work has been exclusively on the threats at the beginning of the attack chain, that is, what underlies almost all major cyberattacks today, for example:
- Info stealers, that collects login credentials and session tokens on a large scale
- Phishing-as-a-service (PhaaS), which is available to all potential attackers
- Loaders, that delivers secondary malicious codes to compromised systems
- Remote Access Trojans (RATs)), which gives attackers continuous, direct access to the victim's environments
“Blocking malicious domains and websites has always been central to successful cyber defense, but taking the step to proactively identify and shut down malicious infrastructure is a new important milestone,” says Martin Fribrock, Country Manager Sweden, Finland and Baltics at TrendAI. In practice, this means that the internet will become a safer place, not only for TrendAI and CleanDNS customers, but for all users.








