433 Central Ave., 4th Floor, St. Petersburg, FL 33701 | info@poseidon-us.com | Office: (813) 786-3120

Broadcom CEO doubles down on private cloud at VMware Explore

Hock Tan talked only for several minutes during the keynote at VMware Explore 2025, but in that time, he laid the groundwork for a host of VMware updates.
http://news.poseidon-us.com/TTtjrb

Snowflake hacker pleads guilty, faces up to 32 years in prison

A Canadian man is facing decades in prison for hacking customer accounts at cloud storage provider Snowflake and stealing data from more than 165 organizations. Connor Riley Moucka, also known as “Waifu” and “Judische,” 26, of Kitchener, Ontario, pleaded guilty in federal court in Washington state to computer fraud, wire fraud, aggravated identity theft, and conspiracy. He is due to be sentenced on October 27 and faces up to 32 years in prison. “Hiding behind … More → The post Snowflake hacker pleads guilty, faces up to 32 years in prison appeared first on Help Net Security.
http://news.poseidon-us.com/TTtgV7

Discounted Claude access bought on the gray market may expose every prompt you send

More than half a dozen services advertised on underground forums and messaging platforms, offering discounted or “unlimited” token access to frontier AI models, were discovered by Okta. Okta believes the trend is likely driven by Chinese users seeking access to AI models that are unavailable because of regulatory and provider restrictions. “The demand is driven by both cost and restrictions on access. It is being satisfied in a variety of ways, one of which is … More → The post Discounted Claude access bought on the gray market may expose every prompt you send appeared first on Help Net Security.
http://news.poseidon-us.com/TTtgV4

Critical Cisco IMC bug gives attackers root, PoC is out (CVE-2026-20200)

Cisco has fixed a critical vulnerability (CVE-2026-20200) in its Integrated Management Controller (IMC), which allows an attacker to run commands as root through the controller’s web interface. The fix was part of Cisco’s August 5 advisory batch, and unlike the bugs squashed by the hardening releases for IOS XE and SD-WAN, this one has a public proof-of-concept exploit. AI-discovered flaws in IOS XE and SD-WAN Cisco made available hardening releases addressing critical-severity flaws in Cisco … More → The post Critical Cisco IMC bug gives attackers root, PoC is out (CVE-2026-20200) appeared first on Help Net Security.
http://news.poseidon-us.com/TTtgTx

Microsoft extends zero trust deeper into enterprise AI

Microsoft expanded its Zero Trust for AI strategy with updates to the Zero Trust Assessment tool and the Zero Trust Workshop. The additions help organizations assess security posture, prioritize remediation, and apply zero trust principles to AI agents and AI-assisted software development. Zero Trust Assessment adds AI pillar Zero Trust Assessment is a free tool that automatically evaluates an organization’s Microsoft security configuration against zero trust best practices, identifies weaknesses, and recommends improvements before they … More → The post Microsoft extends zero trust deeper into enterprise AI appeared first on Help Net Security.
http://news.poseidon-us.com/TTtWS5

Photos: Black Hat USA 2026 Arsenal

This week Help Net Security is at the Mandalay Bay, where Arsenal is running alongside the Briefings. If you’ve never been, it’s the corner of Black Hat that feels least like a conference and most like a workshop: a room full of stations where the people who wrote the tools stand behind laptops and show you what they do. Everything on display is open source, and nearly all of it is available to download the … More → The post Photos: Black Hat USA 2026 Arsenal appeared first on Help Net Security.
http://news.poseidon-us.com/TTtWRx

OWASP 2026 LLM Top 10: “The model will be fooled”

The OWASP GenAI Security Project has released the 2026 edition of its Top 10 for LLM Applications and, for the first time, the list was influenced by real-world incidents. The two top entries – Prompt Injection and Sensitive Information Disclosure – remained constant, but the order shifted more than in past years below them: The 2025 and 2026 versions of OWASP 2026 LLM Top 10, compared (Source: OWASP) Data enters the list-building process Every prior … More → The post OWASP 2026 LLM Top 10: “The model will be fooled” appeared first on Help Net Security.
http://news.poseidon-us.com/TTtWRc

Browser security is where software, data, and AI meet

In this interview with Help Net Security, Rui Ribeiro, CEO of Jscrambler, explains why the browser has become a security problem organizations do not control. Companies do not own the device, the extensions, or the network path, yet that is where application logic, third-party code, customer data, and AI meet during every customer interaction. He discusses the limits of Content Security Policy and Subresource Integrity, the risks of third-party AI chat scripts running with the … More → The post Browser security is where software, data, and AI meet appeared first on Help Net Security.
http://news.poseidon-us.com/TTtMCB

Suppliers, logins, and AI tools are all becoming attack paths

Cybercriminals and state-backed hacking groups are abusing trusted identities, cloud services, AI tools, and software supply chains to gain access while avoiding detection, according to CrowdStrike’s 2026 Threat Hunting Report. Intrusion activity increased by about 4% over the past year. Even though the increase was smaller than in the previous reporting period, it shows a growing focus on more targeted campaigns. Attackers are investing more time in exploiting trusted access paths and legitimate infrastructure. AI … More → The post Suppliers, logins, and AI tools are all becoming attack paths appeared first on Help Net Security.
http://news.poseidon-us.com/TTtMC9