433 Central Ave., 4th Floor, St. Petersburg, FL 33701 | info@poseidon-us.com | Office: (813) 786-3120

Ransomware gangs don’t need control system access to disrupt industrial production

Disrupting IT systems that support industrial environments can be enough to interrupt production, even when ransomware operators do not gain direct access to industrial control systems (ICS), according to Dragos. The company identified 1,140 ransomware incidents involving industrial organizations in the second quarter of 2026, up 12% from 1,020 in Q1. The figures come from publicly disclosed victim data and posts made by ransomware groups on their data leak sites. Manufacturing accounted for 747 incidents, … More → The post Ransomware gangs don’t need control system access to disrupt industrial production appeared first on Help Net Security.
http://news.poseidon-us.com/TTyRrr

Locking your ssh-agent exposed local-only keys until OpenSSH 10.5

Lock your ssh-agent and it should sit there refusing to sign anything until you unlock it. In OpenSSH 10.4, locking it also switched off the check that tells the agent whether a request came from your own machine or arrived down a forwarded connection from a remote server. The fix shipped today in OpenSSH 10.5. The agent holds your decrypted private keys so you are not retyping a passphrase every few minutes, and agent forwarding … More → The post Locking your ssh-agent exposed local-only keys until OpenSSH 10.5 appeared first on Help Net Security.
http://news.poseidon-us.com/TTyRrc

GPT-5.6-Cyber refuses security researchers’ requests far less often

GPT-5.6-Cyber is a new OpenAI model built on GPT-5.6 Sol, trained to find zero-day vulnerabilities and build exploit chains, with fewer refusals on higher-risk, dual-use work. Model is available only through Daybreak Red, the higher tier of OpenAI’s vetted access program for cybersecurity professionals. “The GPT‑5.6‑Cyber model is trained to improve performance on certain cybersecurity workflows involving exploit development and advanced security research,“ the company said. OpenAI built an internal benchmark to track how often … More → The post GPT-5.6-Cyber refuses security researchers’ requests far less often appeared first on Help Net Security.
http://news.poseidon-us.com/TTyF9k

Who will be the Stanislav Petrov in your organization?

The recent news coverage of “rogue AI” systems hacking innocent companies reminded me of one of the world’s most unsung heroes and genuinely someone who may well have saved the world. In 1983, the USSR’s early warning systems reported that the United States had launched nuclear missiles towards the Soviet Union. The officer on duty, Stanislav Petrov, did something computers still struggle to do. He applied context, experience, and human judgement to determine the warning … More → The post Who will be the Stanislav Petrov in your organization? appeared first on Help Net Security.
http://news.poseidon-us.com/TTyF9j

An AI tool found 84 flaws in 5G network software and 23 of them still have no fix

Researchers at Nanyang Technological University turned a set of AI agents loose on the software that runs 4G and 5G phone networks, and the agents came back with 84 security flaws nobody had reported before. Developers have confirmed 83 of them, and 81 now carry CVE numbers. The most serious one lets an attacker take over a subscriber’s data session, so the network delivers that subscriber’s traffic to the attacker instead of to the internet. … More → The post An AI tool found 84 flaws in 5G network software and 23 of them still have no fix appeared first on Help Net Security.
http://news.poseidon-us.com/TTyF9g

Previously unseen entry vector used to breach Polish energy plant

The December 29 cyberattack on a Polish combined heat and power (CHP) plant was the first observed case of attackers gaining access to an OT network through a private APN, according to CERT Polska. The private APN is a dedicated mobile network that a Distribution System Operator (DSO), the company running the local electricity grid, sets up with a mobile carrier. Illustrative use of a private APN in distributed energy resources (Source: CERT Polska) The … More → The post Previously unseen entry vector used to breach Polish energy plant appeared first on Help Net Security.
http://news.poseidon-us.com/TTyF9d

Your security vendor gets the frontier cyber model, you get the findings

Selected red team specialists can now use OpenAI’s cyber models to find and exploit weaknesses in client applications and infrastructure. Those clients never get the models themselves. That split is the design of the Daybreak Cyber Partner Program, which OpenAI expanded on August 10: access to the underlying models stays with the approved partner and is not transferred directly to the customer. Approved partners choose between Daybreak Blue and Daybreak Red, reached through Daybreak Access, … More → The post Your security vendor gets the frontier cyber model, you get the findings appeared first on Help Net Security.
http://news.poseidon-us.com/TTyF9G

Cybersecurity jobs available right now: August 11, 2026

CTI Detection Engineer Department of Parliamentary Services | Australia | Hybrid – View job details As a CTI Detection Engineer, you will lead the detection lifecycle by identifying detection gaps, developing and validating detection logic, deploying and tuning analytics, maintaining cyber threat intelligence workflows, and continuously improving detections to keep pace with evolving adversary tactics, techniques, and procedures (TTPs). Cloud Solution Architect Tata Consultancy Services | Canada | On-site – View job details As a … More → The post Cybersecurity jobs available right now: August 11, 2026 appeared first on Help Net Security.
http://news.poseidon-us.com/TTyB0Y