433 Central Ave., 4th Floor, St. Petersburg, FL 33701 | info@poseidon-us.com | Office: (656) 236-3022

Box expands enterprise AI governance with new agent security featuresox

Box has announced new security capabilities designed to give organizations greater control over AI agents working with enterprise content. With new agent guardrails, third-party agent activity oversight, prompt injection detection, agent classification-based access policies, and more, customers will be able to extend Box’s security controls to both Box Agents and third-party agents, such as Claude, ChatGPT, and Gemini. These new capabilities expand Box’s trusted governance framework to agentic workflows, enabling organizations to confidently deploy and … More → The post Box expands enterprise AI governance with new agent security featuresox appeared first on Help Net Security.
http://news.poseidon-us.com/TTfc0q

Arista adds AI-driven zero trust to VeloCloud SD-WAN

Arista Networks has announced the launch of its new AI-driven Edge Threat Management (ETM) for VeloCloud SD-WAN, delivering integrated zero trust security for enterprise branch offices. Customers can leverage this integration to simplify the branch, collapsing multiple disparate boxes into a single unified secure SD-WAN edge platform. Integrated ETM provides perimeter protection at the WAN edge as an ideal software upgrade option to VeloCloud SD-WAN, enabling customers to unify zero trust branch office security with … More → The post Arista adds AI-driven zero trust to VeloCloud SD-WAN appeared first on Help Net Security.
http://news.poseidon-us.com/TTfc0p

AI models cheat on cybersecurity evaluations, then fail to admit it

Frontier AI models will take just about any route to finish a task, cheating included, according to new cybersecurity evaluations from the UK government’s AI Security Institute (AISI). AISI defines cheating as a model doing something outside the bounds of what a task allows, or breaking a stated rule outright, in order to reach the goal through a shortcut the task wasn’t designed to permit. “Every model we have tested for this behaviour attempted to … More → The post AI models cheat on cybersecurity evaluations, then fail to admit it appeared first on Help Net Security.
http://news.poseidon-us.com/TTfbzt

Google’s Gemini 3.5 Flash Cyber becomes a vulnerability hunter

Google’s Gemini 3.5 Flash Cyber model finds, validates, and patches vulnerabilities before they can be exploited while helping mitigate broader misuse. It is part of a limited-access pilot program that will soon be available to governments and trusted partners through CodeMender, Google DeepMind’s AI coding agent, with broader access planned over time. “CodeMender is our managed code security agent, and starting today, we’re bringing its code scanning and remediation capabilities directly to you in preview. … More → The post Google’s Gemini 3.5 Flash Cyber becomes a vulnerability hunter appeared first on Help Net Security.
http://news.poseidon-us.com/TTfPt4

Police dismantle Kratos phishing platform behind 15,000 monthly campaigns

German and US law enforcement have dismantled the infrastructure behind Kratos, a notorious phishing-as-a-service (PhaaS) platform. Its alleged developer and administrator was arrested in Indonesia by local police. Seizure banner (Source: BKA) The takedown was led by the Frankfurt public prosecutor’s cybercrime unit (ZIT) and Germany’s Federal Criminal Police Office (BKA), working alongside US law enforcement. The suspect was arrested in Indonesia by local police. Authorities describe Kratos as one of the “world’s most widely … More → The post Police dismantle Kratos phishing platform behind 15,000 monthly campaigns appeared first on Help Net Security.
http://news.poseidon-us.com/TTfPt0

Small teams are the heaviest users of AI coding agents

The pull request arrives with the tests already run and the description already written, the work of an agent that handled the whole thing on its own. Somebody still has to read it. On GitHub that somebody is usually one developer sitting alone with the diff, and the rest of the project never sees the code. Maliha Noushin Raida and Daqing Hou at Rochester Institute of Technology sorted 25,264 agentic pull requests by who reviewed … More → The post Small teams are the heaviest users of AI coding agents appeared first on Help Net Security.
http://news.poseidon-us.com/TTfPsh

Snowpick: Open-source ServiceNow exposure scanner

An employee opens a company service portal, searches the knowledge base, and drops a file onto a ticket. Someone who never signed in can send a request to that same portal and get records back. Bishop Fox ran that test across 166 ServiceNow instances during authorized penetration tests. The firm published the results along with the Go tool it used, Snowpick. Findings came back from 31% of the instances. Those instances returned records or confirmed … More → The post Snowpick: Open-source ServiceNow exposure scanner appeared first on Help Net Security.
http://news.poseidon-us.com/TTfHST