Sign up to save your podcastsEmail addressPasswordRegisterOrContinue with GoogleAlready have an account? Log in here.
A brief daily summary of what is important in information security. The podcast is published every weekday and designed to get you ready for the day with a brief, usually 5 minutes long summary of cur... more
FAQs about SANS Stormcast: Daily Cyber Security News:How many episodes does SANS Stormcast: Daily Cyber Security News have?The podcast currently has 1,027 episodes available.
June 03, 2024ISC StormCast for Monday, June 3rd, 2024K1w1 Infostealer Uses gofile.io for Exfiltrationhttps://isc.sans.edu/diary/%22K1w1%22%20InfoStealer%20Uses%20gofile.io%20for%20Exfiltration/30972 Kaspersky Linux Malware Scannerhttps://www.kaspersky.com/blog/kvrt-for-linux/51375/ Snowflake Incidenthttps://www.helpnetsecurity.com/2024/06/01/snowflake-breach-data-theft/ HuggingFace Space Secrets Leakhttps://huggingface.co/blog/space-secrets-disclosure...more6minPlay
May 31, 2024ISC StormCast for Friday, May 31st, 2024Feeding MISP with OSSEChttps://isc.sans.edu/diary/Feeding%20MISP%20with%20OSSEC/30968 Checkpoint VPNhttps://labs.watchtowr.com/check-point-wrong-check-point-cve-2024-24919/ The Pumpkin Eclipsehttps://blog.lumen.com/the-pumpkin-eclipse/ Michael Dunking: Detecting Cypher Injection with Open-Source Network Intrusion Detectionhttps://www.sans.edu/cyber-research/detecting-cypher-injection-with-open-source-network-intrusion-detection/...more16minPlay
May 31, 2024ISC StormCast for Friday, May 31st, 2024Feeding MISP with OSSEChttps://isc.sans.edu/diary/Feeding%20MISP%20with%20OSSEC/30968 Checkpoint VPNhttps://labs.watchtowr.com/check-point-wrong-check-point-cve-2024-24919/ The Pumpkin Eclipsehttps://blog.lumen.com/the-pumpkin-eclipse/ Michael Dunking: Detecting Cypher Injection with Open-Source Network Intrusion Detectionhttps://www.sans.edu/cyber-research/detecting-cypher-injection-with-open-source-network-intrusion-detection/...more16minPlay
May 30, 2024ISC StormCast for Thursday, May 30th, 2024Is that It? Finding the Unknown: Correlations Between Honeypot Logs and PCAPshttps://isc.sans.edu/diary/Is%20that%20It%3F%20%20Finding%20the%20Unknown%3A%20Correlations%20Between%20Honeypot%20Logs%20%26%20PCAPs%20%5BGuest%20Diary%5D/30962 Checkpoint 0-Dayhttps://blog.checkpoint.com/security/enhance-your-vpn-security-posture Okta warns of Credential Stuffing Against Customer Identity Cloudhttps://sec.okta.com/articles/2024/05/detecting-cross-origin-authentication-credential-stuffing-attacks Brute Forcing Old Bitcoin Wallet Passwordhttps://www.youtube.com/watch?v=o5IySpAkThg...more6minPlay
May 30, 2024ISC StormCast for Thursday, May 30th, 2024Is that It? Finding the Unknown: Correlations Between Honeypot Logs and PCAPshttps://isc.sans.edu/diary/Is%20that%20It%3F%20%20Finding%20the%20Unknown%3A%20Correlations%20Between%20Honeypot%20Logs%20%26%20PCAPs%20%5BGuest%20Diary%5D/30962 Checkpoint 0-Dayhttps://blog.checkpoint.com/security/enhance-your-vpn-security-posture Okta warns of Credential Stuffing Against Customer Identity Cloudhttps://sec.okta.com/articles/2024/05/detecting-cross-origin-authentication-credential-stuffing-attacks Brute Forcing Old Bitcoin Wallet Passwordhttps://www.youtube.com/watch?v=o5IySpAkThg...more6minPlay
May 29, 2024ISC StormCast for Wednesday, May 29th, 2024Preventing SQL Injection with Pythonhttps://www.youtube.com/watch?v=1cQy9N1Xndk PoC Exploit for CVE-2024-23108 in Fortinet FortiSIEMhttps://www.horizon3.ai/attack-research/cve-2024-23108-fortinet-fortisiem-2nd-order-command-injection-deep-dive/ ShrinkLocker: Turning BitLocker into ransomwarehttps://securelist.com/ransomware-abuses-bitlocker/112643/ iconv buffer overflow PoC 2024-2961https://github.com/ambionics/cnext-exploits/ PoC for Apple Priv. Escalation bug CVE-2024-27842https://github.com/wangtielei/POCs/tree/main/CVE-2024-27842https://x.com/WangTielei...more5minPlay
May 29, 2024ISC StormCast for Wednesday, May 29th, 2024Preventing SQL Injection with Pythonhttps://www.youtube.com/watch?v=1cQy9N1Xndk PoC Exploit for CVE-2024-23108 in Fortinet FortiSIEMhttps://www.horizon3.ai/attack-research/cve-2024-23108-fortinet-fortisiem-2nd-order-command-injection-deep-dive/ ShrinkLocker: Turning BitLocker into ransomwarehttps://securelist.com/ransomware-abuses-bitlocker/112643/ iconv buffer overflow PoC 2024-2961https://github.com/ambionics/cnext-exploits/ PoC for Apple Priv. Escalation bug CVE-2024-27842https://github.com/wangtielei/POCs/tree/main/CVE-2024-27842https://x.com/WangTielei...more5minPlay
May 28, 2024ISC StormCast for Tuesday, May 28th, 2024Files with TGZ Extension used as malspam attachementshttps://isc.sans.edu/diary/Files%20with%20TXZ%20extension%20used%20as%20malspam%20attachments/30958 Google 0-Dayhttps://chromereleases.googleblog.com/2024/05/stable-channel-update-for-desktop_23.html Google Stops Trusting Globaltrust CAhttps://groups.google.com/a/ccadb.org/g/public/c/wRs-zec8w7k/m/G_9QprJ2AQAJ Checkpoint warns of password bruteforcinghttps://blog.checkpoint.com/security/enhance-your-vpn-security-posture?campaign=checkpoint&eid=guvrs&advisory=1 SEC522: Defending Web Applications isc.sans.edu/j/sec522...more7minPlay
May 28, 2024ISC StormCast for Tuesday, May 28th, 2024Files with TGZ Extension used as malspam attachementshttps://isc.sans.edu/diary/Files%20with%20TXZ%20extension%20used%20as%20malspam%20attachments/30958 Google 0-Dayhttps://chromereleases.googleblog.com/2024/05/stable-channel-update-for-desktop_23.html Google Stops Trusting Globaltrust CAhttps://groups.google.com/a/ccadb.org/g/public/c/wRs-zec8w7k/m/G_9QprJ2AQAJ Checkpoint warns of password bruteforcinghttps://blog.checkpoint.com/security/enhance-your-vpn-security-posture?campaign=checkpoint&eid=guvrs&advisory=1 SEC522: Defending Web Applications isc.sans.edu/j/sec522...more7minPlay
May 24, 2024ISC StormCast for Friday, May 24th, 2024Analysis of 'redtail' file uploads to ISC Honeypothttps://isc.sans.edu/diary/Analysis%20of%20%3Fredtail%3F%20File%20Uploads%20to%20ICS%20Honeypot%2C%20a%20Multi-Architecture%20Coin%20Miner%20%5BGuest%20Diary%5D/30950 Veeam Vulnerablityhttps://www.veeam.com/kb4581 C-Root Server Lost Touch With Peershttps://arstechnica.com/security/2024/05/dns-glitch-that-threatened-internet-stability-fixed-cause-remains-unclear/ Ivanti Vulnerabilitieshttps://forums.ivanti.com/s/article/Avalanche-6-4-3-602-additional-security-hardening-and-CVE-fixed?language=en_US Justice AV Solutions Software Backdoorhttps://www.rapid7.com/blog/post/2024/05/23/cve-2024-4978-backdoored-justice-av-solutions-viewer-software-used-in-apparent-supply-chain-attack/...more8minPlay
FAQs about SANS Stormcast: Daily Cyber Security News:How many episodes does SANS Stormcast: Daily Cyber Security News have?The podcast currently has 1,027 episodes available.