Sign up to save your podcastsEmail addressPasswordRegisterOrContinue with GoogleAlready have an account? Log in here.
A brief daily summary of what is important in information security. The podcast is published every weekday and designed to get you ready for the day with a brief, usually 5 minutes long summary of cur... more
FAQs about SANS Stormcast: Daily Cyber Security News:How many episodes does SANS Stormcast: Daily Cyber Security News have?The podcast currently has 1,027 episodes available.
October 18, 2023ISC StormCast for Wednesday, October 18th, 2023Changes to SMS Delivery and How it Effects MFA and Phishinghttps://isc.sans.edu/diary/Changes%20to%20SMS%20Delivery%20and%20How%20it%20Effects%20MFA%20and%20Phishing/30320 Fake Traffic Tickets with QR Codehttps://twitter.com/polizeiberlin/status/1713867011837567411 Synology NAS DSM Account Takeover: Not Random Randomnumbershttps://claroty.com/team82/research/synology-nas-dsm-account-takeover-when-random-is-not-secure Milesight Routers CVe-2023-43261https://github.com/win3zz/CVE-2023-43261...more7minPlay
October 17, 2023ISC StormCast for Tuesday, October 17th, 2023Are Typos Still relevant As An Indicator of Phishinghttps://isc.sans.edu/diary/Are+typos+still+relevant+as+an+indicator+of+phishing/30316 Active Exploitation of Cisco ISO XE Software Web Management User Interface Vulnhttps://blog.talosintelligence.com/active-exploitation-of-cisco-ios-xe-software/ Mail traffic to cancelled domain nameshttps://www.sidn.nl/en/nl-domain-name/mail-traffic-to-cancelled-domain-names SAMBA Updatehttps://www.samba.org/samba/history/security.html...more6minPlay
October 17, 2023ISC StormCast for Tuesday, October 17th, 2023Are Typos Still relevant As An Indicator of Phishinghttps://isc.sans.edu/diary/Are+typos+still+relevant+as+an+indicator+of+phishing/30316 Active Exploitation of Cisco ISO XE Software Web Management User Interface Vulnhttps://blog.talosintelligence.com/active-exploitation-of-cisco-ios-xe-software/ Mail traffic to cancelled domain nameshttps://www.sidn.nl/en/nl-domain-name/mail-traffic-to-cancelled-domain-names SAMBA Updatehttps://www.samba.org/samba/history/security.html...more6minPlay
October 16, 2023ISC StormCast for Monday, October 16th, 2023What's Normal: Odd Mac Addresseshttps://isc.sans.edu/forums/diary/What's%20Normal%3A%20MAC%20Addresses/30310/ Domain Name Used as Password Captured by DShield Sensorhttps://isc.sans.edu/forums/diary/Domain%20Name%20Used%20as%20Password%20Captured%20by%20DShield%20Sensor/30312/ PoC Exploit for CVE-2023-41993https://github.com/po6ix/POC-for-CVE-2023-41993 AvosLocker Ransomware Detailshttps://www.cisa.gov/sites/default/files/2023-10/aa23-284a-joint-csa-stopransomware-avoslocker-ransomware-update.pdf DarkGate Spreading via Skype and Teamshttps://www.trendmicro.com/en_ph/research/23/j/darkgate-opens-organizations-for-attack-via-skype-teams.html...more6minPlay
October 16, 2023ISC StormCast for Monday, October 16th, 2023What's Normal: Odd Mac Addresseshttps://isc.sans.edu/forums/diary/What's%20Normal%3A%20MAC%20Addresses/30310/ Domain Name Used as Password Captured by DShield Sensorhttps://isc.sans.edu/forums/diary/Domain%20Name%20Used%20as%20Password%20Captured%20by%20DShield%20Sensor/30312/ PoC Exploit for CVE-2023-41993https://github.com/po6ix/POC-for-CVE-2023-41993 AvosLocker Ransomware Detailshttps://www.cisa.gov/sites/default/files/2023-10/aa23-284a-joint-csa-stopransomware-avoslocker-ransomware-update.pdf DarkGate Spreading via Skype and Teamshttps://www.trendmicro.com/en_ph/research/23/j/darkgate-opens-organizations-for-attack-via-skype-teams.html...more6minPlay
October 13, 2023ISC StormCast for Friday, October 13th, 2023SeroXen RAT in Typosquatted NuGet Packageshttps://blog.phylum.io/phylum-discovers-seroxen-rat-in-typosquatted-nuget-package/ Hexadecimal IP Addresseshttps://asec.ahnlab.com/en/57635/ Juniper Vulnerabilitieshttps://supportportal.juniper.net/s/global-search/%40uri?language=en_US#sort=%40sfcec_community_publish_date_formula__c%20descending&numberOfResults=50&f:ctype=[Security%20Advisories] Unpatched Squid Vulnerabilitieshttps://joshua.hu/squid-security-audit-35-0days-45-exploits BSIDES Jacksonvillehttps://bsidesjax.org...more7minPlay
October 13, 2023ISC StormCast for Friday, October 13th, 2023SeroXen RAT in Typosquatted NuGet Packageshttps://blog.phylum.io/phylum-discovers-seroxen-rat-in-typosquatted-nuget-package/ Hexadecimal IP Addresseshttps://asec.ahnlab.com/en/57635/ Juniper Vulnerabilitieshttps://supportportal.juniper.net/s/global-search/%40uri?language=en_US#sort=%40sfcec_community_publish_date_formula__c%20descending&numberOfResults=50&f:ctype=[Security%20Advisories] Unpatched Squid Vulnerabilitieshttps://joshua.hu/squid-security-audit-35-0days-45-exploits BSIDES Jacksonvillehttps://bsidesjax.org...more7minPlay
October 12, 2023ISC StormCast for Thursday, October 12th, 2023CVE-2023-22515 Activately Exploitedhttps://confluence.atlassian.com/security/cve-2023-22515-privilege-escalation-vulnerability-in-confluence-data-center-and-server-1295682276.html curl SOCKS5 oversized hostname vulnerability CVe-2023-38545https://isc.sans.edu/diary/CVE-2023-38545%3A%20curl%20SOCKS5%20oversized%20hostname%20vulnerability.%20How%20bad%20is%20it%3F/30304 Adobe Acrobat Vulnerablity Actively Exploited CVE-2023-21608https://www.cisa.gov/news-events/alerts/2023/10/10/cisa-adds-five-known-vulnerabilities-catalog Google Makes Passkey the Defaulthttps://blog.google/technology/safety-security/passkeys-default-google-accounts/ VBScript Deprecated from Windowshttps://learn.microsoft.com/en-us/windows/whats-new/deprecated-features...more6minPlay
October 12, 2023ISC StormCast for Thursday, October 12th, 2023CVE-2023-22515 Activately Exploitedhttps://confluence.atlassian.com/security/cve-2023-22515-privilege-escalation-vulnerability-in-confluence-data-center-and-server-1295682276.html curl SOCKS5 oversized hostname vulnerability CVe-2023-38545https://isc.sans.edu/diary/CVE-2023-38545%3A%20curl%20SOCKS5%20oversized%20hostname%20vulnerability.%20How%20bad%20is%20it%3F/30304 Adobe Acrobat Vulnerablity Actively Exploited CVE-2023-21608https://www.cisa.gov/news-events/alerts/2023/10/10/cisa-adds-five-known-vulnerabilities-catalog Google Makes Passkey the Defaulthttps://blog.google/technology/safety-security/passkeys-default-google-accounts/ VBScript Deprecated from Windowshttps://learn.microsoft.com/en-us/windows/whats-new/deprecated-features...more6minPlay
October 11, 2023ISC StormCast for Wednesday, October 11th, 2023http2 rapid resethttps://blog.cloudflare.com/technical-breakdown-http2-rapid-reset-ddos-attack/ microsoft patch tuesdayhttps://isc.sans.edu/diary/October%202023%20Microsoft%20Patch%20Tuesday%20Summary/30300...more8minPlay
FAQs about SANS Stormcast: Daily Cyber Security News:How many episodes does SANS Stormcast: Daily Cyber Security News have?The podcast currently has 1,027 episodes available.