Sign up to save your podcastsEmail addressPasswordRegisterOrContinue with GoogleAlready have an account? Log in here.
A brief daily summary of what is important in information security. The podcast is published every weekday and designed to get you ready for the day with a brief, usually 5 minutes long summary of cur... more
FAQs about SANS Stormcast: Daily Cyber Security News:How many episodes does SANS Stormcast: Daily Cyber Security News have?The podcast currently has 1,027 episodes available.
November 01, 2023ISC StormCast for Wednesday, November 1st, 2023Multiple Layers of Anti-Sandboxing Techniqueshttps://isc.sans.edu/diary/Multiple%20Layers%20of%20Anti-Sandboxing%20Techniques/30362 CVE-2023-22518 Improper Authorization Vulnerability in Confluence Data Center and Serverhttps://confluence.atlassian.com/security/cve-2023-22518-improper-authorization-vulnerability-in-confluence-data-center-and-server-1311473907.html Malvertisement Promotes Malicious PyCharm Versionhttps://www.malwarebytes.com/blog/threat-intelligence/2023/10/malvertising-via-dynamic-search-ads-delivers-malware-bonanza Thorn SFTP Gateway Java Deserialization RCE CVE-2016-1000027 CVE-2023-47174https://help.thorntech.com/docs/sftp-gateway-gcp-3.0/gcp-java-deserialization-rce/...more5minPlay
October 31, 2023ISC StormCast for Tuesday, October 31st, 2023Flying under the Radar: The Privacy Impact of Mulicast DNShttps://isc.sans.edu/forums/diary/Flying%20under%20the%20Radar%3A%20The%20Privacy%20Impact%20of%20multicast%20DNS/30358/ Kubernetes ingress-nginx vulnerabilityhttps://github.com/kubernetes/ingress-nginx/issues/10571 Google Chrome HTTPS Upgradehttps://github.com/dadrian/https-upgrade/blob/main/explainer.md Wordpad POC CVE-2023-36563https://www.dillonfrankesecurity.com/posts/cve-2023-36563-wordpad-analysis/...more7minPlay
October 31, 2023ISC StormCast for Tuesday, October 31st, 2023Flying under the Radar: The Privacy Impact of Mulicast DNShttps://isc.sans.edu/forums/diary/Flying%20under%20the%20Radar%3A%20The%20Privacy%20Impact%20of%20multicast%20DNS/30358/ Kubernetes ingress-nginx vulnerabilityhttps://github.com/kubernetes/ingress-nginx/issues/10571 Google Chrome HTTPS Upgradehttps://github.com/dadrian/https-upgrade/blob/main/explainer.md Wordpad POC CVE-2023-36563https://www.dillonfrankesecurity.com/posts/cve-2023-36563-wordpad-analysis/...more7minPlay
October 30, 2023ISC StormCast for Monday, October 30th, 2023Size Matters for Many Security Controlshttps://isc.sans.edu/diary/Size%20Matters%20for%20Many%20Security%20Controls/30352 Spam or Phishing? Looking for Credentials and Passwordshttps://isc.sans.edu/diary/Spam%20or%20Phishing%3F%20Looking%20for%20Credentials%20%26%20Passwords/30354 iOS Leaks MAC Addresshttps://www.youtube.com/watch?v=T3XABxNogTA Zero Day Initiative Pwn2Own Summaryhttps://www.zerodayinitiative.com/blog/2023/10/24/pwn2own-toronto-2023-day-one-resultshttps://www.zerodayinitiative.com/blog/2023/10/25/pwn2own-toronto-2023-day-two-resultshttps://www.zerodayinitiative.com/blog/2023/10/26/pwn2own-toronto-2023-day-three-results Microsoft Octo Tempest Writeuphttps://www.microsoft.com/en-us/security/blog/2023/10/25/octo-tempest-crosses-boundaries-to-facilitate-extortion-encryption-and-destruction/...more7minPlay
October 30, 2023ISC StormCast for Monday, October 30th, 2023Size Matters for Many Security Controlshttps://isc.sans.edu/diary/Size%20Matters%20for%20Many%20Security%20Controls/30352 Spam or Phishing? Looking for Credentials and Passwordshttps://isc.sans.edu/diary/Spam%20or%20Phishing%3F%20Looking%20for%20Credentials%20%26%20Passwords/30354 iOS Leaks MAC Addresshttps://www.youtube.com/watch?v=T3XABxNogTA Zero Day Initiative Pwn2Own Summaryhttps://www.zerodayinitiative.com/blog/2023/10/24/pwn2own-toronto-2023-day-one-resultshttps://www.zerodayinitiative.com/blog/2023/10/25/pwn2own-toronto-2023-day-two-resultshttps://www.zerodayinitiative.com/blog/2023/10/26/pwn2own-toronto-2023-day-three-results Microsoft Octo Tempest Writeuphttps://www.microsoft.com/en-us/security/blog/2023/10/25/octo-tempest-crosses-boundaries-to-facilitate-extortion-encryption-and-destruction/...more7minPlay
October 27, 2023ISC StormCast for Friday, October 27th, 2023Adventures in Validating IPv4 Addresseshttps://isc.sans.edu/forums/diary/Adventures%20in%20Validating%20IPv4%20Addresses/30348/ BIG-IP Configuration Utility Unauthenticated Remote Code Executionhttps://my.f5.com/manage/s/article/K000137353https://www.praetorian.com/blog/refresh-compromising-f5-big-ip-with-request-smuggling-cve-2023-46747/ iLeakage Vulnerabilityhttps://ileakage.com/...more7minPlay
October 27, 2023ISC StormCast for Friday, October 27th, 2023Adventures in Validating IPv4 Addresseshttps://isc.sans.edu/forums/diary/Adventures%20in%20Validating%20IPv4%20Addresses/30348/ BIG-IP Configuration Utility Unauthenticated Remote Code Executionhttps://my.f5.com/manage/s/article/K000137353https://www.praetorian.com/blog/refresh-compromising-f5-big-ip-with-request-smuggling-cve-2023-46747/ iLeakage Vulnerabilityhttps://ileakage.com/...more7minPlay
October 26, 2023ISC StormCast for Thursday, October 26th, 2023Apple Updateshttps://isc.sans.edu/diary/Apple%20Patches%20Everything.%20Releases%20iOS%2017.1%2C%20MacOS%2014.1%20and%20updates%20for%20older%20versions%20fixing%20exploited%20vulnerability/30344 Confluence Server Scans CVE-2023-22515https://isc.sans.edu/diary/30342 Critical VMVware vCenter Patch CVE-2023-34048https://www.vmware.com/security/advisories/VMSA-2023-0023.html...more7minPlay
October 26, 2023ISC StormCast for Thursday, October 26th, 2023Apple Updateshttps://isc.sans.edu/diary/Apple%20Patches%20Everything.%20Releases%20iOS%2017.1%2C%20MacOS%2014.1%20and%20updates%20for%20older%20versions%20fixing%20exploited%20vulnerability/30344 Confluence Server Scans CVE-2023-22515https://isc.sans.edu/diary/30342 Critical VMVware vCenter Patch CVE-2023-34048https://www.vmware.com/security/advisories/VMSA-2023-0023.html...more7minPlay
October 25, 2023ISC StormCast for Wednesday, October 25th, 2023Samsung Messages and Samsung Wallet briefly marked as 'harmful' by Googlehttps://9to5google.com/2023/10/23/samsung-messages-wallet-harmful-app-google/ OAuth Hijackinghttps://salt.security/blog/oh-auth-abusing-oauth-to-take-over-millions-of-accounts Microsoft Exchange Server CVe-2023-36745 PoChttps://n1k0la-t.github.io/2023/10/24/Microsoft-Exchange-Server-CVE-2023-36745/ Citrix Bleed PoC CVe-2023-4966https://www.assetnote.io/resources/research/citrix-bleed-leaking-session-tokens-with-cve-2023-4966 VMWare VRealize Exploit CVE-2023-34051 CVE0-2023-34052https://www.vmware.com/security/advisories/VMSA-2023-0021.html...more6minPlay
FAQs about SANS Stormcast: Daily Cyber Security News:How many episodes does SANS Stormcast: Daily Cyber Security News have?The podcast currently has 1,027 episodes available.