Sign up to save your podcastsEmail addressPasswordRegisterOrContinue with GoogleAlready have an account? Log in here.
A brief daily summary of what is important in information security. The podcast is published every weekday and designed to get you ready for the day with a brief, usually 5 minutes long summary of cur... more
FAQs about SANS Stormcast: Daily Cyber Security News:How many episodes does SANS Stormcast: Daily Cyber Security News have?The podcast currently has 1,034 episodes available.
September 01, 2023ISC StormCast for Friday, September 1st, 2023The low, low cost of (committing) cybercrimehttps://isc.sans.edu/forums/diary/The%20low%2C%20low%20cost%20of%20%28committing%29%20cybercrime/30176/ Unpinnable Github Actionshttps://www.paloaltonetworks.com/blog/prisma-cloud/unpinnable-actions-github-security/ Exploitation of Cisco ASA SSL VPNshttps://www.rapid7.com/blog/post/2023/08/29/under-siege-rapid7-observed-exploitation-of-cisco-asa-ssl-vpns/ Splunk Vulnerabilitieshttps://advisory.splunk.com/advisories Top Level Domain Issueshttps://blog.talosintelligence.com/whats-in-a-name/...more7minPlay
September 01, 2023ISC StormCast for Friday, September 1st, 2023The low, low cost of (committing) cybercrimehttps://isc.sans.edu/forums/diary/The%20low%2C%20low%20cost%20of%20%28committing%29%20cybercrime/30176/ Unpinnable Github Actionshttps://www.paloaltonetworks.com/blog/prisma-cloud/unpinnable-actions-github-security/ Exploitation of Cisco ASA SSL VPNshttps://www.rapid7.com/blog/post/2023/08/29/under-siege-rapid7-observed-exploitation-of-cisco-asa-ssl-vpns/ Splunk Vulnerabilitieshttps://advisory.splunk.com/advisories Top Level Domain Issueshttps://blog.talosintelligence.com/whats-in-a-name/...more7minPlay
August 31, 2023ISC StormCast for Thursday, August 31st, 2023Home Office/Small Business Hurricane Prephttps://isc.sans.edu/diary/Home%20Office%20%20%20Small%20Business%20Hurricane%20Prep/30166 Notepad++ Vulnerabilitieshttps://securitylab.github.com/advisories/GHSL-2023-092_Notepad__/ 7-Zip Vulnerabilityhttps://www.zerodayinitiative.com/advisories/ZDI-23-1164/ BGP Error Handling Issueshttps://blog.benjojo.co.uk/post/bgp-path-attributes-grave-error-handling...more6minPlay
August 31, 2023ISC StormCast for Thursday, August 31st, 2023Home Office/Small Business Hurricane Prephttps://isc.sans.edu/diary/Home%20Office%20%20%20Small%20Business%20Hurricane%20Prep/30166 Notepad++ Vulnerabilitieshttps://securitylab.github.com/advisories/GHSL-2023-092_Notepad__/ 7-Zip Vulnerabilityhttps://www.zerodayinitiative.com/advisories/ZDI-23-1164/ BGP Error Handling Issueshttps://blog.benjojo.co.uk/post/bgp-path-attributes-grave-error-handling...more6minPlay
August 30, 2023ISC StormCast for Wednesday, August 30th, 2023Survival Time for Web Siteshttps://isc.sans.edu/diary/Survival%20time%20for%20web%20sites/30170 PDF/ActiveMime Polyglot Maldocshttps://blogs.jpcert.or.jp/en/2023/08/maldocinpdf.htmlhttps://blog.didierstevens.com/2023/08/29/quickpost-pdf-activemime-maldocs-yara-rule/ RocketMQ Vulnerability Exploitedhttps://blogs.juniper.net/en-us/threat-research/dreambus-botnet-resurfaces-targets-rocketmq-vulnerability ManageEngine Vulnerabiltyhttps://www.manageengine.com/security/advisory/CVE/CVE-2023-35785.html...more7minPlay
August 30, 2023ISC StormCast for Wednesday, August 30th, 2023Survival Time for Web Siteshttps://isc.sans.edu/diary/Survival%20time%20for%20web%20sites/30170 PDF/ActiveMime Polyglot Maldocshttps://blogs.jpcert.or.jp/en/2023/08/maldocinpdf.htmlhttps://blog.didierstevens.com/2023/08/29/quickpost-pdf-activemime-maldocs-yara-rule/ RocketMQ Vulnerability Exploitedhttps://blogs.juniper.net/en-us/threat-research/dreambus-botnet-resurfaces-targets-rocketmq-vulnerability ManageEngine Vulnerabiltyhttps://www.manageengine.com/security/advisory/CVE/CVE-2023-35785.html...more7minPlay
August 29, 2023ISC StormCast for Tuesday, August 29th, 2023Analysis of RAR Exploit Files (CVE-2023-38831)https://isc.sans.edu/diary/Analysis+of+RAR+Exploit+Files+CVE202338831/30164 Juniper Exploit CVE-2023-36844 , CVE-2023-36845 , CVE-2023-36846 , CVE-2023-36847https://labs.watchtowr.com/cve-2023-36844-and-friends-rce-in-juniper-firewalls/ Microsoft Will Enabled Extended Protection for Exchange Server by Defaulthttps://techcommunity.microsoft.com/t5/exchange-team-blog/coming-soon-enabling-extended-protection-on-exchange-server-by/ba-p/3911849 Rust Malware Stages on Crates.iohttps://blog.phylum.io/rust-malware-staged-on-crates-io/ SANS Community Night London Signuphttps://www.sans.org/mlp/community-night-cloud-security-london-september-2023...more7minPlay
August 29, 2023ISC StormCast for Tuesday, August 29th, 2023Analysis of RAR Exploit Files (CVE-2023-38831)https://isc.sans.edu/diary/Analysis+of+RAR+Exploit+Files+CVE202338831/30164 Juniper Exploit CVE-2023-36844 , CVE-2023-36845 , CVE-2023-36846 , CVE-2023-36847https://labs.watchtowr.com/cve-2023-36844-and-friends-rce-in-juniper-firewalls/ Microsoft Will Enabled Extended Protection for Exchange Server by Defaulthttps://techcommunity.microsoft.com/t5/exchange-team-blog/coming-soon-enabling-extended-protection-on-exchange-server-by/ba-p/3911849 Rust Malware Stages on Crates.iohttps://blog.phylum.io/rust-malware-staged-on-crates-io/...more7minPlay
August 28, 2023ISC StormCast for Monday, August 28th, 2023Python Malware Using Postgresql for C2 Communicationshttps://isc.sans.edu/diary/Python%20Malware%20Using%20Postgresql%20for%20C2%20Communications/30158 macOS: Who is Behind This Network Connection?https://isc.sans.edu/diary/macOS%3A%20Who%3Fs%20Behind%20This%20Network%20Connection%3F/30160 CVE-2020-19909 Is Everything that is Wrong with CVEshttps://daniel.haxx.se/blog/2023/08/26/cve-2020-19909-is-everything-that-is-wrong-with-cves/ Windows Certificate Confusionhttps://arstechnica.com/security/2023/08/a-renegade-certificate-is-removed-from-windows-then-it-returns-confusion-ensues/ NPM E-Mail Validator Package Malwarehttps://blog.phylum.io/npm-emails-validator-package-malware/...more7minPlay
August 28, 2023ISC StormCast for Monday, August 28th, 2023Python Malware Using Postgresql for C2 Communicationshttps://isc.sans.edu/diary/Python%20Malware%20Using%20Postgresql%20for%20C2%20Communications/30158 macOS: Who is Behind This Network Connection?https://isc.sans.edu/diary/macOS%3A%20Who%3Fs%20Behind%20This%20Network%20Connection%3F/30160 CVE-2020-19909 Is Everything that is Wrong with CVEshttps://daniel.haxx.se/blog/2023/08/26/cve-2020-19909-is-everything-that-is-wrong-with-cves/ Windows Certificate Confusionhttps://arstechnica.com/security/2023/08/a-renegade-certificate-is-removed-from-windows-then-it-returns-confusion-ensues/ NPM E-Mail Validator Package Malwarehttps://blog.phylum.io/npm-emails-validator-package-malware/...more7minPlay
FAQs about SANS Stormcast: Daily Cyber Security News:How many episodes does SANS Stormcast: Daily Cyber Security News have?The podcast currently has 1,034 episodes available.