
SANS ISC Stormcast, Jan 21, 2025: Downloading Partial ZIP files; Remote Tools Used in Attakcs; Azure DevOps SSRF
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
00:00
Understanding Social Engineering Threats and Web Vulnerabilities
This chapter focuses on a tool for selective file downloads that improves efficiency and bandwidth usage. It also covers a social engineering tactic targeting Ukrainian government users, discusses server-side request forgery vulnerabilities in Azure's DevOps tools, and emphasizes the need for awareness in identifying authorized remote administrators.
Transcript
Play full episode