

SANS Stormcast Friday, April 25th: SMS Gateway Scans; Comvault Exploit; Patch Window Shrinkage; More inetpub issues;
4 snips Apr 25, 2025
AI Snips
Chapters
Transcript
Episode notes
Teltonika SMS Gateway Attacks
- Attackers are scanning for Teltonika SMS gateways using default and common passwords.
- They send test SMS messages to attacker-controlled numbers to verify gateway functionality.
Change Default Passwords
- Change default passwords on all devices to prevent unauthorized access.
- Avoid purchasing devices with simple, well-known default credentials.
Commvault Backup Exploit Example
- Commvault backup software has a remote code execution flaw exploitable without authentication.
- An exploit allows uploading and executing a web shell via an unsecured endpoint.