433 Central Ave., 4th Floor, St. Petersburg, FL 33701 | info@poseidon-us.com | Office: (813) 786-3120

LastPass enhancements improve visibility, governance, and control

LastPass announced a series of strategic product innovations, customer experience enhancements, and industry milestones. These advancements reflect the company’s continued focus on providing practical tools to protect access and identity in an increasingly AI-driven threat landscape. Highlights include new tools that simplify access management, enhancements that help customers get more value from LastPass, and milestones that demonstrate the company’s continued growth and industry leadership. The LastPass commitment to visibility, governance, and control comes at a … More → The post LastPass enhancements improve visibility, governance, and control appeared first on Help Net Security.
http://news.poseidon-us.com/TVGM39

Askeal, the AI cybersecurity assistant that gives verifiable, expert-backed answers

Askeal takes the opposite approach to omniscient Gen AI: rather than pretending to know everything, it combines AI with community expertise. Vetted vendors, researchers, and practitioners contribute their intelligence and tools to help users conduct manual investigations. The startup, backed by a $1.1 million pre-seed round, is launching the tool with an international community of early testers and contributors. A SOC analyst can start the day to 50 alerts requiring manual review. An IT manager … More → The post Askeal, the AI cybersecurity assistant that gives verifiable, expert-backed answers appeared first on Help Net Security.
http://news.poseidon-us.com/TVGM2h

Bot detection arrives in CrowdSec 1.8.0, along with two DoS fixes

Failed SSH logins pile up in an auth log, and a scanner walks a website looking for exposed admin paths. CrowdSec reads log sources and HTTP requests, works out which addresses are misbehaving, and hands the block to a separate remediation component sitting in front of the service. Users report what they see back to the project, which curates it into a community blocklist every installation can pull down. Version 1.8.0 landed on August 31. … More → The post Bot detection arrives in CrowdSec 1.8.0, along with two DoS fixes appeared first on Help Net Security.
http://news.poseidon-us.com/TVGLtp

NIS2 compliance: Fixing IAM and access control before the 2026 audit

The NIS2 Directive places direct obligations on organizations across supply chain risk management, incident reporting, and board-level accountability. October brings a new wave of legally binding deadlines across the EU, as member states move from transposition into enforcement. In Austria, the national implementation law enters into force once adopted; in Poland, mandatory self-registration closes on a fixed date set by the national authority. Broader NIS2 non-compliance exposes essential entities to fines up to €10 million … More → The post NIS2 compliance: Fixing IAM and access control before the 2026 audit appeared first on Help Net Security.
http://news.poseidon-us.com/TVGLs6

What your vendor says about PQC tells you if they are ready

In this interview with Help Net Security, Dr. Yaakov Stein, VP CTO of Allot, discusses what post-quantum readiness looks like inside a mobile network. The discussion covers which operator traffic stays sensitive for years, including subscriber identity mappings, billing records and call metadata, and which becomes worthless within hours. It walks through the order of work, starting with a crypto inventory and hybrid key exchange on TLS interfaces, then IPsec links. It also names the … More → The post What your vendor says about PQC tells you if they are ready appeared first on Help Net Security.
http://news.poseidon-us.com/TVGLpg

Cybersecurity jobs available right now: September 1, 2026

Security Engineer, PSO Google | USA | On-site – View job details As a Security Engineer, you will provide technical guidance to customers adopting Google Cloud Platform, helping them navigate their cloud journey with the Professional Services team. The role includes advising on secure foundational cloud implementations, automated provisioning of infrastructure and applications, and cloud-ready application architectures. Cyber Security Analyst Spait Infotech | Ireland | Hybrid – View job details As a Cyber Security Analyst, … More → The post Cybersecurity jobs available right now: September 1, 2026 appeared first on Help Net Security.
http://news.poseidon-us.com/TVGLpM

Threat actors are posing as AI crawlers to hunt for exposed credentials

Attackers are disguising automated scanning as traffic from AI crawlers operated by OpenAI, Anthropic, Google, Perplexity and other companies while searching websites for exposed credentials and configuration files, according to GreyNoise. (Source: GreyNoise) “Every program that visits a website announces itself in one line of the request. Chrome says it is Chrome. Googlebot says it is Googlebot. Anthropic’s crawler says it is ClaudeBot. Nothing in the request itself proves any of it is true,” researchers … More → The post Threat actors are posing as AI crawlers to hunt for exposed credentials appeared first on Help Net Security.
http://news.poseidon-us.com/TVGLp0

Attackers plant remote access tools on compromised PaperCut servers

The threat actor targeting internet-facing PaperCut Application Servers is covertly installing legitimate remote access software on them, PaperCut Software shared in the most recent update on the ongoing attack campaign. PaperCut zero-days exploited to deploy remote access tools The vendor first warned of in-the-wild compromises on August 27, 2026, when it urged customers using the PaperCut NG and MF print management solutions to “immediately restrict web access to trusted IP addresses only.” At the time, … More → The post Attackers plant remote access tools on compromised PaperCut servers appeared first on Help Net Security.
http://news.poseidon-us.com/TVGLnN

AWS Console Private Access can block sign-ins to personal accounts

The AWS Management Console now loads inside a network with no path to the public internet. Console Private Access became generally available on August 28 for virtual private clouds, the isolated networks customers run inside AWS, that have no internet connectivity at all. Authentication flows, the JavaScript, CSS, and images that draw the page, console-only APIs, and service API calls for supported consoles all travel over PrivateLink endpoints. No internet gateway, no NAT gateway, no … More → The post AWS Console Private Access can block sign-ins to personal accounts appeared first on Help Net Security.
http://news.poseidon-us.com/TVGLmW

ShinyHunters claims it stole 284 million patient records from McKesson

Healthcare company McKesson disclosed a cybersecurity incident in which hackers got into third-party applications and stole data. McKesson is a major U.S. healthcare company that distributes pharmaceuticals, medical supplies and other healthcare products to pharmacies, hospitals and clinics. According to the SEC filing, the intrusion was detected on August 25, 2026. The company said the investigation “is in its early stages,” and that it has not determined the incident is material or likely to affect … More → The post ShinyHunters claims it stole 284 million patient records from McKesson appeared first on Help Net Security.
http://news.poseidon-us.com/TVGLkW