Sign up to save your podcastsEmail addressPasswordRegisterOrContinue with GoogleAlready have an account? Log in here.
A brief daily summary of what is important in information security. The podcast is published every weekday and designed to get you ready for the day with a brief, usually 5 minutes long summary of cur... more
FAQs about SANS Stormcast: Daily Cyber Security News:How many episodes does SANS Stormcast: Daily Cyber Security News have?The podcast currently has 1,027 episodes available.
November 08, 2023ISC StormCast for Wednesday, November 8th, 2023What's Normal: New uses of DNS, Discovery of Designated Resolvers (DDR)https://isc.sans.edu/diary/What%27s%20Normal%3A%20New%20uses%20of%20DNS%2C%20Discovery%20of%20Designated%20Resolvers%20%28DDR%29/30380 BlueNoroff macOS Malwarehttps://www.jamf.com/blog/bluenoroff-strikes-again-with-new-macos-malware/ Emphasizing Security by Default wiht Advanced Microsoft Authenticator Featureshttps://techcommunity.microsoft.com/t5/microsoft-entra-azure-ad-blog/emphasizing-security-by-default-with-advanced-microsoft/ba-p/3773130...more7minPlay
November 07, 2023ISC StormCast for Tuesday, November 7th, 2023Confluence CVe-2023-22518 Exploitedhttps://isc.sans.edu/diary/Exploit%20Activity%20for%20CVE-2023-22518%2C%20Atlassian%20Confluence%20Data%20Center%20and%20Server/30376 Google Threat Horizons Reporthttps://services.google.com/fh/files/blogs/gcat_threathorizons_full_oct2023.pdfhttps://www.sans.edu/cyber-research/bookmark-bruggling-novel-data-exfiltration-with-brugglemark/ Veeam Updatehttps://www.veeam.com/kb4508 QNAP Updatehttps://www.qnap.com/de-de/security-advisory/qsa-23-35...more7minPlay
November 07, 2023ISC StormCast for Tuesday, November 7th, 2023Confluence CVe-2023-22518 Exploitedhttps://isc.sans.edu/diary/Exploit%20Activity%20for%20CVE-2023-22518%2C%20Atlassian%20Confluence%20Data%20Center%20and%20Server/30376 Google Threat Horizons Reporthttps://services.google.com/fh/files/blogs/gcat_threathorizons_full_oct2023.pdfhttps://www.sans.edu/cyber-research/bookmark-bruggling-novel-data-exfiltration-with-brugglemark/ Veeam Updatehttps://www.veeam.com/kb4508 QNAP Updatehttps://www.qnap.com/de-de/security-advisory/qsa-23-35...more7minPlay
November 06, 2023ISC StormCast for Monday, November 6th, 2023New Microsoft Exchange Zero Dayshttps://www.bleepingcomputer.com/news/microsoft/new-microsoft-exchange-zero-days-allow-rce-data-theft-attacks/ StripedFly: Perennially Flying under the Radarhttps://securelist.com/stripedfly-perennially-flying-under-the-radar/110903/ Send My: Sending Data over Apple's Find My Networkhttps://github.com/positive-security/send-my...more8minPlay
November 06, 2023ISC StormCast for Monday, November 6th, 2023New Microsoft Exchange Zero Dayshttps://www.bleepingcomputer.com/news/microsoft/new-microsoft-exchange-zero-days-allow-rce-data-theft-attacks/ StripedFly: Perennially Flying under the Radarhttps://securelist.com/stripedfly-perennially-flying-under-the-radar/110903/ Send My: Sending Data over Apple's Find My Networkhttps://github.com/positive-security/send-my...more8minPlay
November 03, 2023ISC StormCast for Friday, November 3rd, 2023Quick Tip for Artificially Inflated PE Fileshttps://isc.sans.edu/diary/Quick%20Tip%20For%20Artificially%20Inflated%20PE%20Files/30370 Apache ActiveMQ Flaw Exploitedhttps://activemq.apache.org/security-advisories.data/CVE-2023-46604-announcement.txthttps://www.rapid7.com/blog/post/2023/11/01/etr-suspected-exploitation-of-apache-activemq-cve-2023-46604/ Critical Firepower Vulnerabilityhttps://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-fmc-cmd-inj-29MP49hN Dozens of npm Packages Caught Attempting to Deploy Reverse Shellhttps://blog.phylum.io/dozens-of-npm-packages-caught-attempting-to-deploy-reverse-shell/...more6minPlay
November 03, 2023ISC StormCast for Friday, November 3rd, 2023Quick Tip for Artificially Inflated PE Fileshttps://isc.sans.edu/diary/Quick%20Tip%20For%20Artificially%20Inflated%20PE%20Files/30370 Apache ActiveMQ Flaw Exploitedhttps://activemq.apache.org/security-advisories.data/CVE-2023-46604-announcement.txthttps://www.rapid7.com/blog/post/2023/11/01/etr-suspected-exploitation-of-apache-activemq-cve-2023-46604/ Critical Firepower Vulnerabilityhttps://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-fmc-cmd-inj-29MP49hN Dozens of npm Packages Caught Attempting to Deploy Reverse Shellhttps://blog.phylum.io/dozens-of-npm-packages-caught-attempting-to-deploy-reverse-shell/...more6minPlay
November 02, 2023ISC StormCast for Thursday, November 2nd, 2023Malware Dropped Through a ZPAQ Archivehttps://isc.sans.edu/forums/diary/Malware%20Dropped%20Through%20a%20ZPAQ%20Archive/30366/ CVSS 4.0 Now Officialhttps://www.first.org/cvss/v4-0/index.html MOZI Botnet Killswitchhttps://www.welivesecurity.com/en/eset-research/who-killed-mozi-finally-putting-the-iot-zombie-botnet-in-its-grave/ URL Shorteners in .ushttps://securityonline.info/infoblox-uncovers-malicious-wave-in-us-domain-registrations/ Impersonating Slack Usershttps://falconspy.org/redteam/tradecraft/2023/10/05/2023-10-05-Slack-Impersonation.html...more6minPlay
November 02, 2023ISC StormCast for Thursday, November 2nd, 2023Malware Dropped Through a ZPAQ Archivehttps://isc.sans.edu/forums/diary/Malware%20Dropped%20Through%20a%20ZPAQ%20Archive/30366/ CVSS 4.0 Now Officialhttps://www.first.org/cvss/v4-0/index.html MOZI Botnet Killswitchhttps://www.welivesecurity.com/en/eset-research/who-killed-mozi-finally-putting-the-iot-zombie-botnet-in-its-grave/ URL Shorteners in .ushttps://securityonline.info/infoblox-uncovers-malicious-wave-in-us-domain-registrations/ Impersonating Slack Usershttps://falconspy.org/redteam/tradecraft/2023/10/05/2023-10-05-Slack-Impersonation.html...more6minPlay
November 01, 2023ISC StormCast for Wednesday, November 1st, 2023Multiple Layers of Anti-Sandboxing Techniqueshttps://isc.sans.edu/diary/Multiple%20Layers%20of%20Anti-Sandboxing%20Techniques/30362 CVE-2023-22518 Improper Authorization Vulnerability in Confluence Data Center and Serverhttps://confluence.atlassian.com/security/cve-2023-22518-improper-authorization-vulnerability-in-confluence-data-center-and-server-1311473907.html Malvertisement Promotes Malicious PyCharm Versionhttps://www.malwarebytes.com/blog/threat-intelligence/2023/10/malvertising-via-dynamic-search-ads-delivers-malware-bonanza Thorn SFTP Gateway Java Deserialization RCE CVE-2016-1000027 CVE-2023-47174https://help.thorntech.com/docs/sftp-gateway-gcp-3.0/gcp-java-deserialization-rce/...more5minPlay
FAQs about SANS Stormcast: Daily Cyber Security News:How many episodes does SANS Stormcast: Daily Cyber Security News have?The podcast currently has 1,027 episodes available.