433 Central Ave., 4th Floor, St. Petersburg, FL 33701 | info@poseidon-us.com | Office: (813) 786-3120

Laundry Bear’s new Microsoft Exchange attack triggers on email open (CVE-2026-42897)

Russia-affiliated cyber espionage group Laundry Bear (aka Void Blizzard, aka TA488) is exploiting CVE-2026-42897, a cross-site scripting vulnerability in Microsoft Exchange, to target US and European government entities and a variety of private sector organizations via email. The warning comes from Proofpoint, who detected emails carrying the concealed exploit hitting inboxes. “The subject lines and lures are banal, likely so the targeted user opens and skims the message, but dismisses the message as junk without … More → The post Laundry Bear’s new Microsoft Exchange attack triggers on email open (CVE-2026-42897) appeared first on Help Net Security.
http://news.poseidon-us.com/TTn21F

A key MSPB ruling threatens civil service protections, Democrats warn

An amicus brief from 46 Democrats comes as an appeals court is expected to hold a hearing on a decision upholding the at-will firings of two immigration judges.
http://news.poseidon-us.com/TTn1GP

Rethinking critical infrastructure security for the age of AI

The challenge is not one vulnerability in isolation, but rather the pathway that vulnerability creates across connected systems.
http://news.poseidon-us.com/TTmz5h

Iran War’s Secondary Effects Shape 2026 US Violent Extremism

Explore the 2026 US violent extremism threat landscape. This report analyzes rising risks from HVEs, DVEs, and Iran-nexus actors to public and private sector entities.
http://news.poseidon-us.com/TTmybp

CISA sets a new SBOM baseline

The US Cybersecurity and Infrastructure Security Agency (CISA), together with its co-authoring partners, has released the 2026 Minimum Elements for a Software Bill of Materials (SBOM), replacing the 2021 guidance published by the National Telecommunications and Information Administration (NTIA). An SBOM is a list of the components that make up a software package and their supply chain relationships. It helps organizations understand what is included in their software, assess software supply chain risks, and make … More → The post CISA sets a new SBOM baseline appeared first on Help Net Security.
http://news.poseidon-us.com/TTmw7Y

Orca Security secures AI-built and developer-created applications

Orca Security has announced two new AI-powered capabilities: Orca AI AppGen Security, which discovers and secures AI applications built outside the development pipeline on AI-powered platforms like Claude, Supabase, and Lovable, and AI Code Security Auditor, which delivers deep AI-driven static analysis for code developed within traditional pipelines. The capabilities extend the Orca Platform to secure software across the full spectrum of application development, from professional engineering teams to the growing population of AI-assisted builders. … More → The post Orca Security secures AI-built and developer-created applications appeared first on Help Net Security.
http://news.poseidon-us.com/TTmw7W

Attackers are using Microsoft’s legitimate login system to camouflage phishing attacks

Attackers are moving away from fake Microsoft login pages in favor of abusing Microsoft’s own authentication system, letting phishing campaigns slip past the warning signs employees are trained to spot, according to Check Point. Between June 25 and the second week of July, researchers found over 200 phishing emails targeting around 120 organizations in a wide range of industries and countries. The email masquerades as a Microsoft Planner task-assignment notification, claiming that HR has shared … More → The post Attackers are using Microsoft’s legitimate login system to camouflage phishing attacks appeared first on Help Net Security.
http://news.poseidon-us.com/TTmw7T

Cisco FMC static credentials exploited by attackers (CVE-2026-20316)

A static credentials vulnerability (CVE-2026-20316) in Cisco Secure Firewall Management Center (FMC), a platform for centrally managing multiple Cisco Secure Firewall devices across a network, is being leveraged by attackers, CISA warned. Two FMC flaws, one indicator of compromise CVE-2026-20316, reported by Jimi Sebree of Horizon3.ai, is found in the FMC software’s web interface. The static user credentials are for a low-privileged account, and they can be used by attackers to log in to an … More → The post Cisco FMC static credentials exploited by attackers (CVE-2026-20316) appeared first on Help Net Security.
http://news.poseidon-us.com/TTmw7Q

Dropzone AI turns threat hunting into a routine SOC operation

Dropzone AI has announced the general availability of AI Threat Hunter, its proactive threat hunting agent. The tool enables security teams to run structured hunt packs across their environments to identify hidden threats, emerging risks, and security coverage gaps that traditional alerts may miss. Security alerts flag activity that matches predefined detection rules, helping teams identify known threats and suspicious behavior, but they are only one lens into the environment. Threat hunting looks for everything … More → The post Dropzone AI turns threat hunting into a routine SOC operation appeared first on Help Net Security.
http://news.poseidon-us.com/TTmw7N

PortSwigger introduces Burp AT for agentic AI security testing

PortSwigger has announced the public beta of Burp AT, a new addition to Burp Suite that brings agentic AI to professional penetration testing. Burp AT enables penetration testers to delegate defined investigative tasks to AI agents that use Burp Suite’s tools, project context, and purpose-built pentesting capabilities. Testers control how much work the agents perform, while Burp Suite enforces scope, permissions, and approval rules. Responsibility for defining scope, exercising judgment, and validating findings remains with … More → The post PortSwigger introduces Burp AT for agentic AI security testing appeared first on Help Net Security.
http://news.poseidon-us.com/TTmw7C