433 Central Ave., 4th Floor, St. Petersburg, FL 33701 | info@poseidon-us.com | Office: (656) 236-3022

Modern Attack Vectors | Recorded Future

What is an attack vector, and how does it impact your business? Discover the top threat actor targets in 2026 and learn attack vector vs attack surface dynamics.
http://news.poseidon-us.com/TTflP4

Another SharePoint RCE exploited: Patch, then rotate your machine keys (CVE-2026-50522)

Attackers are exploiting a critical SharePoint remote code execution (RCE) vulnerability (CVE-2026-50522) to extract the servers’ IIS machine keys. “WatchTowr is observing active exploitation of CVE-2026-50522 against on-premise Microsoft SharePoint deployments following the release of public exploit code, with attackers stealing machine keys to retain long-term access,” the offensive security company warned on Tuesday. WatchTowr’s global honeypot network registered successful exploitation attempts on July 20, mere hours after the release of the proof-of-concept exploit and … More → The post Another SharePoint RCE exploited: Patch, then rotate your machine keys (CVE-2026-50522) appeared first on Help Net Security.
http://news.poseidon-us.com/TTfc11

Glow exits stealth with $180 million to secure the AI-enabled endpoint

Glow has emerged from stealth with $180 million in funding at a $1.2 billion valuation to advance a prevention-first approach to endpoint security. The funding round was led by Sequoia, Cyberstarts, Greenoaks, and Redpoint Ventures, with participation from Index Ventures, Swish Ventures, Lux Capital, Operator Collective, and Holly Ventures. The company will use the funding to expand its go-to-market team in the United States and grow Glow Labs, its cybersecurity research division. Glow was founded … More → The post Glow exits stealth with $180 million to secure the AI-enabled endpoint appeared first on Help Net Security.
http://news.poseidon-us.com/TTfc10

US seizes over 1,000 domains used for illegal World Cup 2026 streams

The US Department of Justice has seized more than 1,000 internet domains that streamed FIFA World Cup 2026 matches without a license. The domain seizure notice (Source: US Department of Justice) The seizures came in three waves over the course of the tournament. The first two rounds took down nearly 400 domains by the end of June, and two later rounds pushed the total past 1,000. The effort, named “Operation Offsides”, was led by the … More → The post US seizes over 1,000 domains used for illegal World Cup 2026 streams appeared first on Help Net Security.
http://news.poseidon-us.com/TTfc0z

Lookout identifies exploitable vulnerabilities in mobile apps

Lookout has announced the launch of the Lookout Mobile Software Exposure Center (MSEC). Integrated natively into the Lookout Mobile Endpoint Security platform, MSEC enables organizations to continuously detect, validate, prioritize, and remediate exploitable vulnerabilities across their mobile software ecosystem. The advancement of frontier AI models, such as Anthropic’s Claude Mythos, marks a fundamental shift in the cybersecurity landscape. By reducing the cost and time required to discover vulnerabilities, develop exploits, and orchestrate sophisticated attacks, AI … More → The post Lookout identifies exploitable vulnerabilities in mobile apps appeared first on Help Net Security.
http://news.poseidon-us.com/TTfc0v

Box expands enterprise AI governance with new agent security featuresox

Box has announced new security capabilities designed to give organizations greater control over AI agents working with enterprise content. With new agent guardrails, third-party agent activity oversight, prompt injection detection, agent classification-based access policies, and more, customers will be able to extend Box’s security controls to both Box Agents and third-party agents, such as Claude, ChatGPT, and Gemini. These new capabilities expand Box’s trusted governance framework to agentic workflows, enabling organizations to confidently deploy and … More → The post Box expands enterprise AI governance with new agent security featuresox appeared first on Help Net Security.
http://news.poseidon-us.com/TTfc0q

Arista adds AI-driven zero trust to VeloCloud SD-WAN

Arista Networks has announced the launch of its new AI-driven Edge Threat Management (ETM) for VeloCloud SD-WAN, delivering integrated zero trust security for enterprise branch offices. Customers can leverage this integration to simplify the branch, collapsing multiple disparate boxes into a single unified secure SD-WAN edge platform. Integrated ETM provides perimeter protection at the WAN edge as an ideal software upgrade option to VeloCloud SD-WAN, enabling customers to unify zero trust branch office security with … More → The post Arista adds AI-driven zero trust to VeloCloud SD-WAN appeared first on Help Net Security.
http://news.poseidon-us.com/TTfc0p

AI models cheat on cybersecurity evaluations, then fail to admit it

Frontier AI models will take just about any route to finish a task, cheating included, according to new cybersecurity evaluations from the UK government’s AI Security Institute (AISI). AISI defines cheating as a model doing something outside the bounds of what a task allows, or breaking a stated rule outright, in order to reach the goal through a shortcut the task wasn’t designed to permit. “Every model we have tested for this behaviour attempted to … More → The post AI models cheat on cybersecurity evaluations, then fail to admit it appeared first on Help Net Security.
http://news.poseidon-us.com/TTfbzt