Sign up to save your podcastsEmail addressPasswordRegisterOrContinue with GoogleAlready have an account? Log in here.
A brief daily summary of what is important in information security. The podcast is published every weekday and designed to get you ready for the day with a brief, usually 5 minutes long summary of cur... more
FAQs about SANS Stormcast: Daily Cyber Security News:How many episodes does SANS Stormcast: Daily Cyber Security News have?The podcast currently has 1,027 episodes available.
November 15, 2023ISC StormCast for Wednesday, November 15th, 2023Microsoft Patcheshttps://isc.sans.edu/diary/Microsoft%20Patch%20Tuesday%20November%202023/30400 Adobe Updateshttps://helpx.adobe.com/security/security-bulletin.html Intel CPU Glitch State Patchhttps://lock.cmpxchg8b.com/reptar.htmlhttps://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00950.html...more8minPlay
November 14, 2023ISC StormCast for Tuesday, November 14th, 2023Noticing command control channels by reviewing DNS protocolshttps://isc.sans.edu/diary/Noticing%20command%20and%20control%20channels%20by%20reviewing%20DNS%20protocols/30396 Passive SSH Key Compromise via Latticeshttps://eprint.iacr.org/2023/1711.pdf Juniper Vulnerabilities Exploitedhttps://supportportal.juniper.net/s/article/2023-08-Out-of-Cycle-Security-Bulletin-Junos-OS-SRX-Series-and-EX-Series-Multiple-vulnerabilities-in-J-Web-can-be-combined-to-allow-a-preAuth-Remote-Code-Execution?language=en_US...more6minPlay
November 14, 2023ISC StormCast for Tuesday, November 14th, 2023Noticing command control channels by reviewing DNS protocolshttps://isc.sans.edu/diary/Noticing%20command%20and%20control%20channels%20by%20reviewing%20DNS%20protocols/30396 Passive SSH Key Compromise via Latticeshttps://eprint.iacr.org/2023/1711.pdf Juniper Vulnerabilities Exploitedhttps://supportportal.juniper.net/s/article/2023-08-Out-of-Cycle-Security-Bulletin-Junos-OS-SRX-Series-and-EX-Series-Multiple-vulnerabilities-in-J-Web-can-be-combined-to-allow-a-preAuth-Remote-Code-Execution?language=en_US...more6minPlay
November 13, 2023ISC StormCast for Monday, November 13th, 2023Routers Targeted for Gafgyt Botnethttps://isc.sans.edu/forums/diary/Routers%20Targeted%20for%20Gafgyt%20Botnet%20%5BGuest%20Diary%5D/30390/ ScreenConnect used to Attack Healthcarehttps://www.huntress.com/blog/third-party-pharmaceutical-vendor-linked-to-pharmacy-and-health-clinic-cyberattack Fake Skills Assessment Portals Associated with Sapphire Sleethttps://twitter.com/MsftSecIntel/status/1722316019920728437 OpenVPN Access Server Vulnerabilitieshttps://openvpn.net/security-advisory/access-server-security-update-cve-2023-46849-cve-2023-46850/...more6minPlay
November 13, 2023ISC StormCast for Monday, November 13th, 2023Routers Targeted for Gafgyt Botnethttps://isc.sans.edu/forums/diary/Routers%20Targeted%20for%20Gafgyt%20Botnet%20%5BGuest%20Diary%5D/30390/ ScreenConnect used to Attack Healthcarehttps://www.huntress.com/blog/third-party-pharmaceutical-vendor-linked-to-pharmacy-and-health-clinic-cyberattack Fake Skills Assessment Portals Associated with Sapphire Sleethttps://twitter.com/MsftSecIntel/status/1722316019920728437 OpenVPN Access Server Vulnerabilitieshttps://openvpn.net/security-advisory/access-server-security-update-cve-2023-46849-cve-2023-46850/...more6minPlay
November 10, 2023ISC StormCast for Friday, November 10th, 2023Visual Examples of Code Injectionhttps://isc.sans.edu/diary/Visual%20Examples%20of%20Code%20Injection/30388 SysAid Exploited by Cl0p Ransomware (CVE-2023-47246)https://www.sysaid.com/blog/service-desk/on-premise-software-security-vulnerability-notification WS_FTP Server Update CVE-2023-42659https://community.progress.com/s/article/WS-FTP-Server-Service-Pack-November-2023 Malvertiser copies PC news site to delivery infostealerhttps://www.malwarebytes.com/blog/threat-intelligence/2023/11/malvertiser-copies-pc-news-site-to-deliver-infostealer pyArrow/Apache Arrow Vulnerabilityhttps://lists.apache.org/thread/yhy7tdfjf9hrl9vfrtzo8p2cyjq87v7n...more6minPlay
November 10, 2023ISC StormCast for Friday, November 10th, 2023Visual Examples of Code Injectionhttps://isc.sans.edu/diary/Visual%20Examples%20of%20Code%20Injection/30388 SysAid Exploited by Cl0p Ransomware (CVE-2023-47246)https://www.sysaid.com/blog/service-desk/on-premise-software-security-vulnerability-notification WS_FTP Server Update CVE-2023-42659https://community.progress.com/s/article/WS-FTP-Server-Service-Pack-November-2023 Malvertiser copies PC news site to delivery infostealerhttps://www.malwarebytes.com/blog/threat-intelligence/2023/11/malvertiser-copies-pc-news-site-to-deliver-infostealer pyArrow/Apache Arrow Vulnerabilityhttps://lists.apache.org/thread/yhy7tdfjf9hrl9vfrtzo8p2cyjq87v7n...more6minPlay
November 09, 2023ISC StormCast for Thursday, November 9th, 2023Example of a Phishing Campaing Project Filehttps://isc.sans.edu/diary/Example%20of%20Phishing%20Campaign%20Project%20File/30384 Cryptomining with Microsoft Azure Automation Serviceshttps://www.safebreach.com/blog/cryptocurrency-miner-microsoft-azure Windows 11 Insider Changing Firewall Behaviourhttps://blogs.windows.com/windows-insider/2023/11/08/announcing-windows-11-insider-preview-build-25992-canary-channel/ CISA Adds SLP Vulnerability to Known Exploited Vulnerabilty Listhttps://www.cisa.gov/news-events/alerts/2023/11/08/cisa-adds-one-known-exploited-vulnerability-catalog...more6minPlay
November 09, 2023ISC StormCast for Thursday, November 9th, 2023Example of a Phishing Campaing Project Filehttps://isc.sans.edu/diary/Example%20of%20Phishing%20Campaign%20Project%20File/30384 Cryptomining with Microsoft Azure Automation Serviceshttps://www.safebreach.com/blog/cryptocurrency-miner-microsoft-azure Windows 11 Insider Changing Firewall Behaviourhttps://blogs.windows.com/windows-insider/2023/11/08/announcing-windows-11-insider-preview-build-25992-canary-channel/ CISA Adds SLP Vulnerability to Known Exploited Vulnerabilty Listhttps://www.cisa.gov/news-events/alerts/2023/11/08/cisa-adds-one-known-exploited-vulnerability-catalog...more6minPlay
November 08, 2023ISC StormCast for Wednesday, November 8th, 2023What's Normal: New uses of DNS, Discovery of Designated Resolvers (DDR)https://isc.sans.edu/diary/What%27s%20Normal%3A%20New%20uses%20of%20DNS%2C%20Discovery%20of%20Designated%20Resolvers%20%28DDR%29/30380 BlueNoroff macOS Malwarehttps://www.jamf.com/blog/bluenoroff-strikes-again-with-new-macos-malware/ Emphasizing Security by Default wiht Advanced Microsoft Authenticator Featureshttps://techcommunity.microsoft.com/t5/microsoft-entra-azure-ad-blog/emphasizing-security-by-default-with-advanced-microsoft/ba-p/3773130...more7minPlay
FAQs about SANS Stormcast: Daily Cyber Security News:How many episodes does SANS Stormcast: Daily Cyber Security News have?The podcast currently has 1,027 episodes available.