433 Central Ave., 4th Floor, St. Petersburg, FL 33701 | info@poseidon-us.com | Office: (813) 786-3120

New 5G White Paper Available: Initial Non-Access Stratum Message Security

The NIST National Cybersecurity Center of Excellence (NCCoE) has released the initial public draft Cybersecurity White Paper (CSWP) 36F, Initial Non-Access Stratum (NAS) Message Security, which describes a 5G security feature that protects sensitive
http://news.poseidon-us.com/TTxWkS

Strengthening Transit Resilience: Final CSF Community Profile + Upcoming Webinar

The NIST National Cybersecurity Center of Excellence (NCCoE) has released the final NIST Interagency Report 8576, Transit Cybersecurity Framework Community Profile, to help U.S. transit agencies strengthen their cybersecurity practices while
http://news.poseidon-us.com/TTxWjk

Anthropic to put AI in charge of reviewing Claude Code actions by default

Anthropic will make auto mode in Claude Code the default for new sessions on Pro, Max, and Team plans starting August 14. Users who previously selected a different default may receive a one-time prompt asking whether they want to switch to auto mode. In a controlled experiment with 1,053 paid professional testers, human review caught just 13.6% of dangerous commands, while auto mode caught 89%. (Source: Anthropic) It remains optional on Claude Enterprise, the Claude … More → The post Anthropic to put AI in charge of reviewing Claude Code actions by default appeared first on Help Net Security.
http://news.poseidon-us.com/TTxW13

OpenAI locks down Astra over potential critical cyber capabilities

OpenAI’s internal evaluation of its upcoming model, Astra, found significant advances in agentic coding and cybersecurity, leading the company to conclude that it cannot rule out the model reaching the critical capability level for cybersecurity under its Preparedness Framework. The Preparedness Framework, first published in December 2023, outlines how OpenAI evaluates frontier AI risks and determines the safeguards required before deploying increasingly capable models. It identifies high-risk capability areas, including cybersecurity, biological and chemical threats, … More → The post OpenAI locks down Astra over potential critical cyber capabilities appeared first on Help Net Security.
http://news.poseidon-us.com/TTxR3Z

GitHub Dependabot malware alerts now cover eight ecosystems

GitHub has flagged npm malware since March 2026. Anyone pulling in a bad PyPI, Maven, RubyGems, NuGet, Go, crates.io, or PHP Composer package has had no such warning, because GitHub’s malware detection only ever watched one ecosystem. That changed this month. GitHub’s Advisory Database now ingests malware reports from OpenSSF’s malicious-packages repository, a public feed in OSV format that launched in 2023 with more than 15,000 reports and has grown daily since, covering typosquats, dependency-confusion … More → The post GitHub Dependabot malware alerts now cover eight ecosystems appeared first on Help Net Security.
http://news.poseidon-us.com/TTxR33

Chainloop: Open-source evidence store and policy engine for the software supply chain

Chainloop is an open source evidence store for the software supply chain. A command line tool runs inside a GitHub Actions, GitLab, Jenkins, or Dagger pipeline, picks up what the build produced, uploads those files to content-addressable storage, and references each one in a signed in-toto attestation. in-toto is a specification for recording who ran which step of a build, so the record can be checked afterward. Compliance and security teams get a control plane … More → The post Chainloop: Open-source evidence store and policy engine for the software supply chain appeared first on Help Net Security.
http://news.poseidon-us.com/TTxLHC

Product showcase: Enpass Password Manager breaks away from the proprietary cloud model

Enpass is a password manager that stores passwords, passkeys, payment cards, identities, secure notes, software licenses, and other sensitive information in encrypted vaults. Vaults remain on the device or in a cloud storage service selected by the user. Users who work across multiple devices can install Enpass on Windows, macOS, Linux, Android, and iOS. Browser extensions are available for Chrome, Edge, Firefox, Safari, Brave, Opera, and Vivaldi. Getting started The app first asks whether it … More → The post Product showcase: Enpass Password Manager breaks away from the proprietary cloud model appeared first on Help Net Security.
http://news.poseidon-us.com/TTxLHB

71% of CISOs spend 10+ hours on board reports

Boards want evidence that security controls and architecture reduce business risk, expressed in terms of resilience, consequence, and decision relevance. Translating technical findings into business language remains a major time burden for CISOs, who are calling for simpler data delivery, better frameworks, and better context. Pulse Security AI’s The CISO-Board Communication Gap report found that board members bring external information into discussions while many organizations still lack a formally defined cyber risk appetite. Over the … More → The post 71% of CISOs spend 10+ hours on board reports appeared first on Help Net Security.
http://news.poseidon-us.com/TTxLH8

How to report an AI Act violation in the EU

The EU’s fight to regulate AI models entered a new chapter on 2 August 2026, when the European Commission’s AI Office and national authorities began enforcing the AI Act. The AI Act is the EU’s law regulating AI, the first broad legal framework of its kind. It creates a common set of rules for AI systems used or sold in the EU, with the goal of encouraging innovation while protecting people’s safety and fundamental rights. … More → The post How to report an AI Act violation in the EU appeared first on Help Net Security.
http://news.poseidon-us.com/TTxLH3