Sign up to save your podcastsEmail addressPasswordRegisterOrContinue with GoogleAlready have an account? Log in here.
A brief daily summary of what is important in information security. The podcast is published every weekday and designed to get you ready for the day with a brief, usually 5 minutes long summary of cur... more
FAQs about SANS Stormcast: Daily Cyber Security News:How many episodes does SANS Stormcast: Daily Cyber Security News have?The podcast currently has 1,018 episodes available.
December 02, 2024ISC StormCast for Monday, December 2nd, 2024AWS DShield Sensor + DShield SIEMhttps://isc.sans.edu/diary/SANS%20ISC%20Internship%20Setup%3A%20AWS%20DShield%20Sensor%20%2B%20DShield%20SIEM%20%5BGuest%20Diary%5D/31480 From a Regular Infostealer to its Obfuscated Versionhttps://isc.sans.edu/diary/From%20a%20Regular%20Infostealer%20to%20its%20Obfuscated%20Version/31484 Credit Card Skimmer Malware Targeting Magento Checkout Pageshttps://blog.sucuri.net/2024/11/credit-card-skimmer-malware-targeting-magento-checkout-pages.html LogoFAIL Exploited to Deploy Bootkitty, the first UEFI bootkit for Linuxhttps://www.binarly.io/blog/logofail-exploited-to-deploy-bootkitty-the-first-uefi-bootkit-for-linux Stickers:https://isc.sans.edu/stickers.html (code PODCAST)...more6minPlay
November 27, 2024ISC StormCast for Wednesday, November 27th, 2024Using Zeek, Snort, and Grafana to Detect Crypto Mining Malwarehttps://isc.sans.edu/diary/%5BGuest%20Diary%5D%20Using%20Zeek%2C%20Snort%2C%20and%20Grafana%20to%20Detect%20Crypto%20Mining%20Malware/31472 The Nearest Neighbor Attack: How A Russian APT Weaponized Nearby Wi-Fi Networks for Covert Accesshttps://www.volexity.com/blog/2024/11/22/the-nearest-neighbor-attack-how-a-russian-apt-weaponized-nearby-wi-fi-networks-for-covert-access/ Introducing NachoVPN: One VPN Server to Pwn Them Allhttps://blog.amberwolf.com/blog/2024/november/introducing-nachovpn---one-vpn-server-to-pwn-them-all/ Keycloak Patcheshttps://github.com/keycloak/keycloak/security/advisories/GHSA-93ww-43rr-79v3 Palo Alto Networks Global Protect Apphttps://security.paloaltonetworks.com/CVE-2024-5921 PHP Updateshttps://github.com/php/php-src/security/advisories/GHSA-g665-fm4p-vhff...more7minPlay
November 26, 2024ISC StormCast for Tuesday, November 26th, 2024Quick & Dirty Obfuscated JavaScript Analysishttps://isc.sans.edu/diary/Quick%20%26%20Dirty%20Obfuscated%20JavaScript%20Analysis/31468 Decrypting a PDF With a User Passwordhttps://isc.sans.edu/diary/Decrypting%20a%20PDF%20With%20a%20User%20Password/31466 The strange case of disappearing Russian servershttps://isc.sans.edu/diary/The%20strange%20case%20of%20disappearing%20Russian%20servers/31476 QNAP Buggy Firmware Updatehttps://community.qnap.com/t/firmware-qts-5-2-2-2950-build-20241114-released/254 7-ZIP Zstandard Decompression Integer Underflowhttps://www.zerodayinitiative.com/advisories/ZDI-24-1532/https://7-zip.org/download.html...more5minPlay
November 22, 2024ISC StormCast for Friday, November 22nd, 2024Increase In Phishing SVG Attachmentshttps://isc.sans.edu/diary/Increase%20In%20Phishing%20SVG%20Attachments/31456 Logging blind spot revealed in FortiClient VPNhttps://pentera.io/blog/FortiClient-VPN_logging-blind-spot-revealed/ Needrestart Vulnerabilityhttps://www.qualys.com/2024/11/19/needrestart/needrestart.txt...more6minPlay
November 21, 2024ISC StormCast for Thursday, November 21st, 2024Apple Patches Two Exploited Vulnerabilitieshttps://isc.sans.edu/diary/Apple%20Fixes%20Two%20Exploited%20Vulnerabilities/31452 Oracle Patch for Agile Product Lifecycle Management CVE-2024-21287https://www.oracle.com/security-alerts/alert-cve-2024-21287.html OFBiz Patches CVE-2024-47208 CVE-2024-48962https://nvd.nist.gov/vuln/detail/CVE-2024-47208https://seclists.org/oss-sec/2024/q4/95 D-Link Warns of Vulnerability in EOL Deviceshttps://supportannouncement.us.dlink.com/security/publication.aspx?name=SAP10415...more6minPlay
November 20, 2024ISC StormCast for Wednesday, November 20th, 2024Detecting the Presence of a Debugger in Linuxhttps://isc.sans.edu/diary/Detecting%20the%20Presence%20of%20a%20Debugger%20in%20Linux/31450 Palo Alto Patcheshttps://security.paloaltonetworks.com/CVE-2024-0012https://security.paloaltonetworks.com/CVE-2024-9474 VMware vCenter Server Attackshttps://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/24968e Veritas Enterprise Vault Vulnerabilityhttps://www.veritas.com/support/en_US/security/VTS24-014...more7minPlay
November 19, 2024ISC StormCast for Tuesday, November 19th, 2024Exploit attempts for unpatched Citrix vulnerability CVE-2024-8068/CVE-2024-8069https://isc.sans.edu/diary/Exploit+attempts+for+unpatched+Citrix+vulnerability/31446https://support.citrix.com/s/article/CTX691941-citrix-session-recording-security-bulletin-for-cve20248068-and-cve20248069?language=en_US Microsoft Power Pages: Data Exposure Reviewedhttps://appomni.com/ao-labs/microsoft-power-pages-data-exposure-reviewed/ Zohocorp ManageEngine ADAudit Plus Vulnerable To SQL Injection Attacks CVE-2024-49574https://www.manageengine.com/products/active-directory-audit/cve-2024-49574.html...more6minPlay
November 18, 2024ISC StormCast for Monday, November 18th, 2024Ancient TP-Link Backdoor Discovered by Attackershttps://isc.sans.edu/diary/Ancient%20TP-Link%20Backdoor%20Discovered%20by%20Attackers/31442 GitHub Projects Targeted with Malicious Commits To Frame Researchershttps://www.bleepingcomputer.com/news/security/github-projects-targeted-with-malicious-commits-to-frame-researcher/ PaloAlto and Fortinet Vulnerabilitieshttps://labs.watchtowr.com/hop-skip-fortijump-fortijumphigher-cve-2024-23113-cve-2024-47575/https://security.paloaltonetworks.com/PAN-SA-2024-0015https://www.volexity.com/blog/2024/11/15/brazenbamboo-weaponizes-forticlient-vulnerability-to-steal-vpn-credentials-via-deepdata/...more7minPlay
November 13, 2024ISC StormCast for Wednesday, November 13th, 2024Microsoft November 2024 Patch Tuesdayhttps://isc.sans.edu/diary/Microsoft%20November%202024%20Patch%20Tuesday/31438 CISA Top Routinely Exploited Vulnerabilitieshttps://www.cisa.gov/news-events/cybersecurity-advisories/aa24-317a APT Actors Embed Malware within macOS Flutter Applicationshttps://www.jamf.com/blog/jamf-threat-labs-apt-actors-embed-malware-within-macos-flutter-applications/...more6minPlay
November 12, 2024ISC StormCast for Tuesday, November 12th, 2024PDF Object Streamshttps://isc.sans.edu/diary/PDF%20Object%20Streams/31430 Mazda Infotainment Vulnerabilitieshttps://www.zerodayinitiative.com/blog/2024/11/7/multiple-vulnerabilities-in-the-mazda-in-vehicle-infotainment-ivi-system Ruby SAML CVE-2024-45409: As bad as it gets and hiding in plain sighthttps://workos.com/blog/ruby-saml-cve-2024-45409 Veeam Backup Enterprise Manager Vulnerabilityhttps://www.veeam.com/kb4682 Security Update for Dell Enterprise SONiC Distribution Vulnerabilitieshttps://www.dell.com/support/kbdoc/en-us/000245655/dsa-2024-449-security-update-for-dell-enterprise-sonic-distribution-vulnerabilities Easy Access to Information for Conducting Fraudulent Emergency Data Requests Impacts US-Based Companies and Law Enforcement Agencieshttps://www.ic3.gov/CSA/2024/241104.pdf...more7minPlay
FAQs about SANS Stormcast: Daily Cyber Security News:How many episodes does SANS Stormcast: Daily Cyber Security News have?The podcast currently has 1,018 episodes available.