SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS Stormcast Friday, April 25th: SMS Gateway Scans; Comvault Exploit; Patch Window Shrinkage; More inetpub issues;

4 snips
Apr 25, 2025
Ask episode
AI Snips
Chapters
Transcript
Episode notes
ANECDOTE

Teltonika SMS Gateway Attacks

  • Attackers are scanning for Teltonika SMS gateways using default and common passwords.
  • They send test SMS messages to attacker-controlled numbers to verify gateway functionality.
ADVICE

Change Default Passwords

  • Change default passwords on all devices to prevent unauthorized access.
  • Avoid purchasing devices with simple, well-known default credentials.
ANECDOTE

Commvault Backup Exploit Example

  • Commvault backup software has a remote code execution flaw exploitable without authentication.
  • An exploit allows uploading and executing a web shell via an unsecured endpoint.
Get the Snipd Podcast app to discover more snips from this episode
Get the app