SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

Johannes B. Ullrich
undefined
Nov 16, 2023 • 6min

ISC StormCast for Thursday, November 16th, 2023

Dive into the alarming world of malware as a new threat infiltrates systems through MSI packages, masquerading as harmless JPEGs. Uncover vulnerabilities in the ChatGPT code interpreter, revealing security flaws that could be exploited. The episode also highlights critical directory traversal vulnerabilities in Reactor Netty and discusses serious security concerns affecting Aruba networking products. Stay informed about these pressing cybersecurity issues to better protect your systems.
undefined
Nov 15, 2023 • 7min

ISC StormCast for Wednesday, November 15th, 2023

This episode dives into Microsoft and Adobe's recent security patches, addressing 64 vulnerabilities, including critical flaws in Chromium, Edge, and Microsoft Office. The discussion highlights the importance of timely updates to maintain security. Additionally, a spotlight is placed on Intel's microcode update designed to tackle processor vulnerabilities, showcasing the ongoing battle against cybersecurity threats.
undefined
Nov 14, 2023 • 5min

ISC StormCast for Tuesday, November 14th, 2023

Explore how DNS logs can reveal command and control channels used by attackers. Learn about serious vulnerabilities in SSH that could compromise security. Delve into the risks of faulty signatures in RSA algorithms and their effects on secret key protection. The importance of updating server secret keys and engaging clients in new security measures is also emphasized. Additionally, discover how recent Juniper vulnerabilities have been exploited, potentially leading to remote code execution.
undefined
Nov 13, 2023 • 6min

ISC StormCast for Monday, November 13th, 2023

Recent talks highlight the Gafgyt botnet targeting routers, stressing the importance of updated firmware and strong passwords. Healthcare systems are under attack, showcasing vulnerabilities linked to third-party vendors. Additionally, North Korea's Sapphire Sleet is on the prowl, using fake job portals to exploit developers. Insights into OpenVPN Access Server vulnerabilities remind us that staying informed is crucial in this ever-evolving cyber landscape.
undefined
Nov 10, 2023 • 5min

ISC StormCast for Friday, November 10th, 2023

Discover the dark world of code injection as experts reveal how vulnerabilities can be exploited in Windows systems. Learn about the alarming tactics of the CLOP ransomware gang, highlighting the urgent need for software updates. Stay informed with critical cybersecurity updates, including a significant fix for WS FTP and a warning about a malvertising campaign posing risks. Plus, don’t overlook the vulnerabilities linked to Apache Arrow involving the PyError Python module. It's a must-listen for anyone interested in cyber safety.
undefined
Nov 9, 2023 • 5min

ISC StormCast for Thursday, November 9th, 2023

Discover the chilling world of phishing campaigns, where attackers cleverly disguise their tactics to mimic legitimate marketing. Uncover the vulnerabilities in Azure Automation Services that allowed cryptocurrency miners to exploit systems through faulty Python script management. Also, learn about the latest security enhancements in Windows 11, including crucial updates to SMB and NTLM protocols, as well as a newly identified vulnerability that could jeopardize network security.
undefined
Nov 8, 2023 • 6min

ISC StormCast for Wednesday, November 8th, 2023

Discover the new world of DNS with designated resolvers and their implications for security and privacy. Learn about BlueNoroff, a malware targeting macOS users in cryptocurrency scams. Dive into Microsoft's advanced Authenticator features designed to enhance security by default. Join the conversation about the evolving landscape of cybersecurity and share your own experiences for a richer community interaction.
undefined
Nov 7, 2023 • 6min

ISC StormCast for Tuesday, November 7th, 2023

Explore the latest cyber threats as the hosts dive into the exploitation of Confluence CVE-2023-22518. Discover vulnerabilities in Veeam's monitoring tools and QNAP's network devices, underscoring the critical need for timely system updates. The conversation highlights the significance of proactive cybersecurity measures to minimize risks and protect data from emerging threats.
undefined
Nov 6, 2023 • 7min

ISC StormCast for Monday, November 6th, 2023

New Microsoft Exchange Zero Days https://www.bleepingcomputer.com/news/microsoft/new-microsoft-exchange-zero-days-allow-rce-data-theft-attacks/ StripedFly: Perennially Flying under the Radar https://securelist.com/stripedfly-perennially-flying-under-the-radar/110903/ Send My: Sending Data over Apple's Find My Network https://github.com/positive-security/send-my
undefined
Nov 3, 2023 • 5min

ISC StormCast for Friday, November 3rd, 2023

Quick Tip for Artificially Inflated PE Files https://isc.sans.edu/diary/Quick%20Tip%20For%20Artificially%20Inflated%20PE%20Files/30370 Apache ActiveMQ Flaw Exploited https://activemq.apache.org/security-advisories.data/CVE-2023-46604-announcement.txt https://www.rapid7.com/blog/post/2023/11/01/etr-suspected-exploitation-of-apache-activemq-cve-2023-46604/ Critical Firepower Vulnerability https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-fmc-cmd-inj-29MP49hN Dozens of npm Packages Caught Attempting to Deploy Reverse Shell https://blog.phylum.io/dozens-of-npm-packages-caught-attempting-to-deploy-reverse-shell/

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app