
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) SANS Stormcast Thursday Mar 13th: Exploiting Login Pages with Log4j; Patch Tuesday Fallout; Adobe Patches; Medusa Ransomware; Zoom and Font Library Updates;
Mar 13, 2025
Attackers are probing login pages for Log4j vulnerabilities, including VMWare's HCX REST API. Recent Apple and Microsoft patches are causing issues, potentially reactivating features users wanted off. Adobe has rolled out critical updates to prevent remote code execution in Acrobat. Plus, CISA has shared valuable insights on Medusa Ransomware, while Zoom addresses several serious flaws with a new update. Stay informed about these urgent cybersecurity threats and software patches!
AI Snips
Chapters
Transcript
Episode notes
Log4j Exploitation via Usernames
- Attackers are exploiting Log4j vulnerabilities by injecting payloads via usernames in login pages.
- Johannes Ulrich observed this targeting VMware HCX API and other login pages, including Cisco.
Patch Tuesday Follow-up
- Apple's latest update may re-enable Apple Intelligence, so double-check your settings.
- Microsoft is offering support for USB printer issues caused by the January update.
Adobe Acrobat Reader Updates
- Update Adobe Acrobat Reader immediately.
- The latest patch fixes critical remote code execution vulnerabilities.
