SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) cover image

SANS Stormcast Tuesday Mar 18th 2025: Analyzing GUID Encoded Shellcode; Node.js SAML Vuln; Tomcat RCE in the Wild; CSS e-mail obfuscation

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

00:00

Vulnerabilities in Cobalt Strike and Node.js XML Crypto Library

This chapter explores recent developments in malware that use Cobalt Strike beacons encoded as UUIDs, featuring an advanced decoding script for better attribution. It also examines a critical vulnerability in the Node.js XML crypto library related to SAML message processing, shedding light on parsing complexities and their security implications.

Transcript
Play full episode

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app