SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

Johannes B. Ullrich
undefined
Dec 7, 2023 • 6min

ISC StormCast for Thursday, December 7th, 2023

Delve into the implications of internet scanning, including a new RFC that may enhance attribution for probes. Explore a significant vulnerability in the MLflow machine learning framework, highlighting crucial security practices. The discussion also sheds light on monitoring AWS Secure Token Service usage and recent updates addressing vulnerabilities in Atlassian products. Plus, don’t miss the Holiday Hack Challenge for a fun twist on security awareness!
undefined
Dec 6, 2023 • 6min

ISC StormCast for Wednesday, December 6th, 2023

Discover the latest enhancements in Cobalt Strike analysis, particularly the ability to extract runtime configurations from memory. Learn about dangerous ColdFusion exploits and the urgent need for bolstered cybersecurity defenses. The discussion also highlights critical vulnerabilities in Atos Unify OpenScape, focusing on argument injection and privilege escalation risks. Additionally, explore emerging threats related to web shells and unauthorized modifications within communication systems, emphasizing proactive security measures.
undefined
Dec 5, 2023 • 6min

ISC StormCast for Tuesday, December 5th, 2023

Delve into the tactics employed by pro-Russian hacktivists, focusing on their exploitation of vulnerabilities in platforms like SharePoint. Discover ICANN's new system designed to notify domain owners of abuses. Plus, catch up on the latest security patches for Android and GitLab, ensuring your digital world remains resilient. This discussion covers critical updates that are shaping the cyber landscape.
undefined
Dec 4, 2023 • 6min

ISC StormCast for Monday, December 4th, 2023

Today’s discussion highlights alarming UEFI firmware vulnerabilities that could compromise systems at boot. A clever phishing scam targeting WordPress users is tricking individuals into installing a backdoor plugin. Additionally, Cactus Ransomware has exploited Qlik Sense, raising concerns about data security. The hosts also touched on the importance of patching vulnerabilities, including a recent fix from VMWare. Cybersecurity vigilance is emphasized as threats continue to evolve.
undefined
Dec 1, 2023 • 6min

ISC StormCast for Friday, December 1st, 2023

The latest security updates from Apple tackle critical WebKit vulnerabilities that could put devices at risk. An intriguing discussion unfolds around the expansion of the Mirai botnet, highlighted by a prophetic post from an intern. Vulnerabilities discovered in Zyxel's NAS products raise alarms, while recent developments involving SolarWinds invite further scrutiny. Tune in for essential insights into these pressing cybersecurity issues and their implications.
undefined
Nov 30, 2023 • 6min

ISC StormCast for Thursday, November 30th, 2023

Dive into the intriguing world of honeypots and their role in cybersecurity. Discover the latest statistics on attack patterns from DShield. Learn about critical vulnerabilities in Arcserve Unified Data Protection and Hikvision products. Uncover the risks posed by prompt injection in various custom GPTs. This discussion will keep you informed and vigilant in a landscape that's constantly evolving.
undefined
Nov 29, 2023 • 6min

ISC StormCast for Wednesday, November 29th, 2023

This episode dives into alarming vulnerabilities, including a critical flaw in Microsoft SharePoint that allows attackers to bypass authentication. Pro-Russian hackers are actively scanning for these weak points. The discussion also touches on Microsoft Defender's deprecation and a significant vulnerability affecting Synology devices. Additionally, there's a focus on an Apache Tomcat request smuggling issue, emphasizing the importance of staying updated on security measures.
undefined
Nov 28, 2023 • 7min

ISC StormCast for Tuesday, November 28th, 2023

A critical vulnerability in the OwnCloud file sharing system could let attackers execute arbitrary code, prompting urgent protective measures. Meanwhile, security flaws in Windows Hello's fingerprint authentication system raise concerns, as manipulations of stored fingerprints could be exploited. Brands like Dell, Lenovo, and Microsoft are under scrutiny as research into these weaknesses expands, highlighting the need for improved security in biometric systems.
undefined
Nov 27, 2023 • 6min

ISC StormCast for Monday, November 27th, 2023

A celebration of DShield's birthday kicks off the discussion, highlighting community achievements. The dangers of the Mirai botnet are explored, including a new vulnerability that could expand its reach. Insights into router firmware vulnerabilities reveal alarming exploitation trends. The potential risks of exposing network video recorders are examined, along with tips for better patch management. Lastly, vulnerabilities in virtual machine files and a static code injection issue in OpenCart are dissected, with a call to action for the SANS holiday hack challenge!
undefined
Nov 17, 2023 • 15min

ISC StormCast for Friday, November 17th, 2023

Explore how to optimize tcpdump performance for faster data processing. Discover the alarming rise of a Zimbra 0-day exploit targeting governments. Delve into AI's role in cataloging cybersecurity vulnerabilities, and learn about a critical FortiSIEM command injection vulnerability. The challenges of managing vast cybersecurity data surface, along with innovative solutions for enhanced analytics. Finally, uncover strategies for efficient data onboarding while addressing storage costs, all with insights from the upcoming Thanksgiving holiday.

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app