433 Central Ave., 4th Floor, St. Petersburg, FL 33701 | info@poseidon-us.com | Office: (813) 786-3120

15 TP-Link Omada vulnerabilities let attackers hijack routers and intercept camera traffic

TP-Link prints the serial number of an Omada router on its packaging and on a label attached to the device. Those numbers run in sequence, and feeding a guessed one to the Omada cloud service returns the matching device’s MAC address and model. Serials beginning 22460J500 appear to be ER605 routers, and serials beginning 224608100 appear to be the ER7206. Forescout’s Vedere Labs researchers built that into an attack chain, one of several they assembled … More → The post 15 TP-Link Omada vulnerabilities let attackers hijack routers and intercept camera traffic appeared first on Help Net Security.
http://news.poseidon-us.com/TTsdPN

Bank of America impersonators weaponize ScreenConnect, then make it hard to remove

A phishing campaign impersonating Bank of America (BoA) is underway, trying to trick Windows users into installing ScreenConnect remote access software and then making it difficult to uninstall it. Different traps for Mac and Windows users By claiming the recipient must take specific actions “to avoid account restrictions,” the email, sent from onlinebanking@ealerts[.]bkofamerica[.]com, tries to push them to follow the link without thinking. According to Huntress researchers, Mac users are taken to a BoA lookalike … More → The post Bank of America impersonators weaponize ScreenConnect, then make it hard to remove appeared first on Help Net Security.
http://news.poseidon-us.com/TTsYpq

Cloudflare gives AI agents wallets with built-in spending controls

Cloudflare’s Wallets will give AI agents running on its platform a human-readable wallet handle for paying APIs and online content within limits set by their creator. Handle reservations have opened, while the service will become available in the coming months. It will include two types of digital wallets: Account Wallets and Virtual Wallets. Wallets (Source: Cloudflare) Account Wallets are designed for people and organizations that use Cloudflare. They allow owners to add funds, create and … More → The post Cloudflare gives AI agents wallets with built-in spending controls appeared first on Help Net Security.
http://news.poseidon-us.com/TTsYpj

Future AGI: Open-source platform for shipping self-improving AI agents

Future AGI is an open-source platform for tracing, evaluating, simulating, and guardrailing LLM agents, licensed Apache 2.0 and self-hostable. Self-hosted instances register with Future AGI on first boot and send an instance ID, a version string, a deployment type, and the email addresses and domains of active admin users. That registration fires once, before anyone signs in to the dashboard. The opt-out is one environment variable, FUTURE_AGI_TELEMETRY_DISABLED=1, placed in .env ahead of the first start. … More → The post Future AGI: Open-source platform for shipping self-improving AI agents appeared first on Help Net Security.
http://news.poseidon-us.com/TTsVjH

Product showcase: Material unifies Google Workspace email, file & OAuth defense

Here’s an uncomfortable truth: the attack that gets you won’t look like an attack. It’ll look like a normal login, a normal file share, a normal permission request you clicked past without reading. You don’t have a phishing problem, a DLP problem, or an OAuth problem. You have one problem wearing three masks, and most security stacks aren’t built to address this. Material Security designed its platform from a fresh point of view: stop defending … More → The post Product showcase: Material unifies Google Workspace email, file & OAuth defense appeared first on Help Net Security.
http://news.poseidon-us.com/TTsPl3

What stops attackers wrecking industrial plants is knowing how

Engineers at an Israeli food producer spent most of a week rebuilding a refrigeration system after an intruder switched the gas cooler and receiver valves to manual and pinned them open. Liquid CO2 flooded the compressors and destroyed them. The replacement units did not match the originals, so the whole system had to be reworked and recharged with gas. That incident is one of roughly forty in Kaspersky ICS CERT’s quarterly roundup of attacks on … More → The post What stops attackers wrecking industrial plants is knowing how appeared first on Help Net Security.
http://news.poseidon-us.com/TTsPkx

Your enterprise AI footprint is about three times bigger than your model list

Organizations are building AI systems that combine models, agents and external tools instead of relying on standalone AI, according to Snyk’s latest State of Agentic AI Adoption report. The study analyzed 3,044 enterprise environments and 1.39 million code repositories to examine how enterprises are deploying AI. Adopting agentic architectures Of organizations using AI, 46.9% have adopted agentic architectures built on AI agents, model context protocol (MCP) servers, or both. More than half have deployed the … More → The post Your enterprise AI footprint is about three times bigger than your model list appeared first on Help Net Security.
http://news.poseidon-us.com/TTsPkf