

SANS ISC Stormcast Feb 3rd 2025: Automating Cyber Ranges; Deepseek Scams; PyPi Archived State; Medical Backdoors
8 snips Feb 3, 2025
Discover the intriguing world of automated cyber ranges and their creation processes. Learn how scammers are capitalizing on the Deepseek hype, leading to malware infections through deceptive sites. Delve into the newly archived status feature on PyPi, signaling the end of maintenance for certain projects. Finally, uncover concerns about a backdoor found in a medical monitoring device, raising alarms in cybersecurity for healthcare. Tune in for insights into modern threats and innovations!
AI Snips
Chapters
Transcript
Episode notes
Automating Cyber Ranges
- Use Richard's PowerShell scripts to automate the creation of cyber ranges in Windows.
- These scripts simplify configuring DNS settings, host names, and Active Directory.
DeepSeek Scams
- DeepSeek's recent security issues and downtime have created opportunities for scammers.
- Scammers use lookalike websites with fake download buttons to distribute malware.
PyPI Archived Status
- PyPI now allows developers to mark projects as 'archived' to indicate they are no longer maintained.
- Developers should release a final version explaining the archival and suggesting alternatives.