Sign up to save your podcastsEmail addressPasswordRegisterOrContinue with GoogleAlready have an account? Log in here.
A brief daily summary of what is important in information security. The podcast is published every weekday and designed to get you ready for the day with a brief, usually 5 minutes long summary of cur... more
FAQs about SANS Stormcast: Daily Cyber Security News:How many episodes does SANS Stormcast: Daily Cyber Security News have?The podcast currently has 1,027 episodes available.
October 25, 2023ISC StormCast for Wednesday, October 25th, 2023Samsung Messages and Samsung Wallet briefly marked as 'harmful' by Googlehttps://9to5google.com/2023/10/23/samsung-messages-wallet-harmful-app-google/ OAuth Hijackinghttps://salt.security/blog/oh-auth-abusing-oauth-to-take-over-millions-of-accounts Microsoft Exchange Server CVe-2023-36745 PoChttps://n1k0la-t.github.io/2023/10/24/Microsoft-Exchange-Server-CVE-2023-36745/ Citrix Bleed PoC CVe-2023-4966https://www.assetnote.io/resources/research/citrix-bleed-leaking-session-tokens-with-cve-2023-4966 VMWare VRealize Exploit CVE-2023-34051 CVE0-2023-34052https://www.vmware.com/security/advisories/VMSA-2023-0021.html...more7minPlay
October 24, 2023ISC StormCast for Tuesday, October 24th, 2023Apple TV IPv6 DoShttps://isc.sans.edu/diary/How%20an%20AppleTV%20may%20take%20down%20your%20%28%23IPv6%29%20network/30336 Squid Patcheshttps://github.com/squid-cache/squid/security/advisories Critical Citrix Updatehttps://www.netscaler.com/blog/news/cve-2023-4966-critical-security-update-now-available-for-netscaler-adc-and-netscaler-gateway/ Cisco Vulnerablity Updates CVE-2023-20198https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxe-webui-privesc-j22SaA4z...more7minPlay
October 24, 2023ISC StormCast for Tuesday, October 24th, 2023Apple TV IPv6 DoShttps://isc.sans.edu/diary/How%20an%20AppleTV%20may%20take%20down%20your%20%28%23IPv6%29%20network/30336 Squid Patcheshttps://github.com/squid-cache/squid/security/advisories Critical Citrix Updatehttps://www.netscaler.com/blog/news/cve-2023-4966-critical-security-update-now-available-for-netscaler-adc-and-netscaler-gateway/ Cisco Vulnerablity Updates CVE-2023-20198https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxe-webui-privesc-j22SaA4z...more7minPlay
October 23, 2023ISC StormCast for Monday, October 23rd, 2023base64dump.py Handles More Encodings Than Just BASE64https://isc.sans.edu/diary/base64dump.py%20Handles%20More%20Encodings%20Than%20Just%20BASE64/30332 Stealing OAuth Tokens via Open Redirectshttps://eval.blog/research/microsoft-account-token-leaks-in-harvest/ VMWare Patcheshttps://www.vmware.com/security/advisories.html Solarwinds Patcheshttps://documentation.solarwinds.com/en/success_center/arm/content/release_notes/arm_2023-2-1_release_notes.htm...more7minPlay
October 23, 2023ISC StormCast for Monday, October 23rd, 2023base64dump.py Handles More Encodings Than Just BASE64https://isc.sans.edu/diary/base64dump.py%20Handles%20More%20Encodings%20Than%20Just%20BASE64/30332 Stealing OAuth Tokens via Open Redirectshttps://eval.blog/research/microsoft-account-token-leaks-in-harvest/ VMWare Patcheshttps://www.vmware.com/security/advisories.html Solarwinds Patcheshttps://documentation.solarwinds.com/en/success_center/arm/content/release_notes/arm_2023-2-1_release_notes.htm...more7minPlay
October 20, 2023ISC StormCast for Friday, October 20th, 2023Honeypot Updatehttps://github.com/DShield-ISC/dshield/blob/main/README.md Malicious Keepass Adshttps://www.malwarebytes.com/blog/threat-intelligence/2023/10/clever-malvertising-attack-uses-punycode-to-look-like-legitimate-website Malicious JavaScript in Smart Contractshttps://labs.guard.io/etherhiding-hiding-web2-malicious-code-in-web3-smart-contracts-65ea78efad16...more7minPlay
October 20, 2023ISC StormCast for Friday, October 20th, 2023Honeypot Updatehttps://github.com/DShield-ISC/dshield/blob/main/README.md Malicious Keepass Adshttps://www.malwarebytes.com/blog/threat-intelligence/2023/10/clever-malvertising-attack-uses-punycode-to-look-like-legitimate-website Malicious JavaScript in Smart Contractshttps://labs.guard.io/etherhiding-hiding-web2-malicious-code-in-web3-smart-contracts-65ea78efad16...more7minPlay
October 19, 2023ISC StormCast for Thursday, October 19th, 2023Hiding in Hexhttps://isc.sans.edu/diary/Hiding%20in%20Hex/30322 Oracle Quarterly Critical Patch Updatehttps://www.oracle.com/security-alerts/cpuoct2023.html Citrix Vulnerability Exploited CVE-2023-4966https://www.mandiant.com/resources/blog/remediation-netscaler-adc-gateway-cve-2023-4966 Exposed Jupyter Notebooks Exploitedhttps://www.cadosecurity.com/qubitstrike-an-emerging-malware-campaign-targeting-jupyter-notebooks/...more6minPlay
October 19, 2023ISC StormCast for Thursday, October 19th, 2023Hiding in Hexhttps://isc.sans.edu/diary/Hiding%20in%20Hex/30322 Oracle Quarterly Critical Patch Updatehttps://www.oracle.com/security-alerts/cpuoct2023.html Citrix Vulnerability Exploited CVE-2023-4966https://www.mandiant.com/resources/blog/remediation-netscaler-adc-gateway-cve-2023-4966 Exposed Jupyter Notebooks Exploitedhttps://www.cadosecurity.com/qubitstrike-an-emerging-malware-campaign-targeting-jupyter-notebooks/...more6minPlay
October 18, 2023ISC StormCast for Wednesday, October 18th, 2023Changes to SMS Delivery and How it Effects MFA and Phishinghttps://isc.sans.edu/diary/Changes%20to%20SMS%20Delivery%20and%20How%20it%20Effects%20MFA%20and%20Phishing/30320 Fake Traffic Tickets with QR Codehttps://twitter.com/polizeiberlin/status/1713867011837567411 Synology NAS DSM Account Takeover: Not Random Randomnumbershttps://claroty.com/team82/research/synology-nas-dsm-account-takeover-when-random-is-not-secure Milesight Routers CVe-2023-43261https://github.com/win3zz/CVE-2023-43261...more7minPlay
FAQs about SANS Stormcast: Daily Cyber Security News:How many episodes does SANS Stormcast: Daily Cyber Security News have?The podcast currently has 1,027 episodes available.