433 Central Ave., 4th Floor, St. Petersburg, FL 33701 | info@poseidon-us.com | Office: (813) 786-3120

What the identity attack surface looks like when trust becomes the target

In this Help Net Security video, Joel Moses, VP, Strategic Engineering at F5, explains how attackers use identity instead of breaking through it. He walks through MFA fatigue, session token theft, and consent given to malicious applications, using the 2022 Uber breach as an example. He also covers how cloud and on-premises trust relationships give attackers a path between environments. Moses suggests number matching, FIDO2 keys, periodic reviews of third party application access, and watching … More → The post What the identity attack surface looks like when trust becomes the target appeared first on Help Net Security.
http://news.poseidon-us.com/TTk1fT

Product showcase: LastPass Authenticator brings Face ID, Apple Watch, and cloud backup to 2FA

LastPass Authenticator is a free app that provides two-factor authentication (2FA) for accounts and any service that supports time-based one-time passwords (TOTP). It supports push notifications for one-tap approvals and generates six-digit verification codes for online accounts. The app is available for iPhone, iPad, Apple Watch, and Android devices. Getting started Adding a new account takes only a few steps. Users can scan a QR code, import one from an image saved in Photos, or … More → The post Product showcase: LastPass Authenticator brings Face ID, Apple Watch, and cloud backup to 2FA appeared first on Help Net Security.
http://news.poseidon-us.com/TTjzww

GitHub delays version updates so malware gets caught first

An automated update tool watches a package registry, catches a new release the moment it publishes, and opens a pull request for your team. That is the job it was built to do. In September 2025, that speed cut the wrong way. An attacker phished one npm maintainer’s credentials and shipped poisoned versions of chalk, debug, and about a dozen other packages. Together those packages are downloaded more than 2 billion times a week, and … More → The post GitHub delays version updates so malware gets caught first appeared first on Help Net Security.
http://news.poseidon-us.com/TTjzwm

Claude Opus 5 sharpens coding and cybersecurity work on AWS

Claude Opus 5 went live on Amazon Bedrock and Claude Platform on AWS. Anthropic says the model improves on Claude Opus 4.8’s cyber capabilities, coding through cybersecurity. Anyone with an AWS account in a supported region can call it. On higher-risk requests, Opus 5 hands the job back to Opus 4.8, the older model. The user sees a notice when that happens. API customers can configure the fallback. The guardrail that catches the riskiest requests … More → The post Claude Opus 5 sharpens coding and cybersecurity work on AWS appeared first on Help Net Security.
http://news.poseidon-us.com/TTjvBn