

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
Johannes B. Ullrich
A brief daily summary of what is important in information security. The podcast is published every weekday and designed to get you ready for the day with a brief, usually 5 minute long, summary of current network security related events. The content is late breaking, educational and based on listener input as well as on input received by the SANS Internet Stormcenter. You may submit questions and comments via our contact form at https://isc.sans.edu/contact.html .
Episodes
Mentioned books

Oct 25, 2024 • 5min
ISC StormCast for Friday, October 25th, 2024
Explore the dangers of active development features in production environments along with the risks they pose to sensitive data. Discover a surge in large-scale brute-force attacks targeting VPNs and SSH services using common credentials. The discussion also highlights serious vulnerabilities in Cisco Secure Firewall Management Center software. Additionally, learn about the alarming issue of hardcoded cloud credentials found in popular mobile apps, raising concerns about security in the mobile landscape.

Oct 24, 2024 • 7min
ISC StormCast for Thursday, October 24th, 2024
Bash scripts are emerging as a favorite tool among attackers, raising alarms in cybersecurity. A critical vulnerability in FortiManager has been exploited, alongside new risks found in SharePoint. Plus, there's an ongoing discussion about an OpenSSL flaw and the impact of reduced certificate lifetimes on security. The conversation also touches on the need for new regulations to automate certificate renewals, enhancing overall system defenses against evolving threats.

Oct 23, 2024 • 5min
ISC StormCast for Wednesday, October 23rd, 2024
Explore the rising concern of HTTP traffic in a world pushing for HTTPS. Learn about crucial vulnerabilities in VMware vCenter and why swift patching matters. Delve into security updates for UniFi devices and discover how Roundcube's mail server is being targeted by fake attachments. The discussion highlights the need for robust security protocols and timely updates to protect against unauthorized access in software applications.

Oct 22, 2024 • 6min
ISC StormCast for Tuesday, October 22nd, 2024
Dive into the intersection of emergency preparedness and cybersecurity. Discover how recent hurricanes are shaping disaster recovery strategies, with a spotlight on the crucial role of satellite services. Uncover significant vulnerabilities in macOS and Fortinet, emphasizing the urgent need for updates. A fascinating look at navigating today's cyber threats while ensuring data safety!

Oct 21, 2024 • 6min
ISC StormCast for Monday, October 21st, 2024
Discover the hurdles of cloud logging as Microsoft grapples with incomplete data. Delve into the complexities of end-to-end encrypted cloud storage and its inherent vulnerabilities. A malware incident tied to ESET raises alarms while critical updates from Synology and the Spring Framework highlight ongoing security challenges. Learn about a critical Grafana security release that demands attention. This episode serves as a crucial reminder of the ever-evolving landscape of cybersecurity threats.

Oct 18, 2024 • 6min
ISC StormCast for Friday, October 18th, 2024
Dive into the latest cybersecurity buzz with a deep analysis of emerging attack patterns, including port scanning from Amazon's cloud network. Explore a critical macOS vulnerability and crucial updates from Oracle, Cisco, and SAP. The discussion emphasizes the importance of timely firmware updates to thwart security risks. Plus, learn about scanning activities from a specific subnet and unexpected advertisements on government sites related to medication. It's an essential listen for those keen on staying ahead in the cybersecurity landscape!

Oct 17, 2024 • 6min
ISC StormCast for Thursday, October 17th, 2024
Discover the top ten uncommon SSH usernames and passwords that could enhance your security posture. Dive into CISA's alarming product security bad practices, and learn about critical vulnerabilities in Kubernetes Image Builder. The podcast also sheds light on the Solarwinds hardcoded password exploit and methods to bypass security measures. Don't miss the insights on gearing up against these emerging threats!

Oct 16, 2024 • 7min
ISC StormCast for Wednesday, October 16th, 2024
A newly uncovered vulnerability in the Angular Base64 upload demo script raises critical security concerns. Quantum computing advancements pose potential threats to RSA cryptography, though recent breaches do not undermine its strength. The discussion also emphasizes the significance of cryptographic agility and introduces EDR Silencer as a noteworthy cybersecurity tool. Lastly, a new FIDO2 proposal for standardized passkey exchanges highlights efforts to enhance password security.

Oct 15, 2024 • 6min
ISC StormCast for Tuesday, October 15th, 2024
Discover the stealthy world of phishing with blob URLs and learn why user education is vital for cybersecurity. Dive deep into a complex vulnerability affecting Fortinet products and explore effective mitigation techniques. Uncover the new supply chain attack that can trojanize CLI commands and hear about the challenges of exploiting a newly discovered SL VPN vulnerability. Additionally, gain insights into the risks of malicious packages and the perils of name confusion in software development.

Oct 14, 2024 • 6min
ISC StormCast for Monday, October 14th, 2024
Microsoft is phasing out outdated protocols like PPTP and L2TP, pushing for stronger options to boost security. F5 Big-IP systems are under fire due to unencrypted cookie vulnerabilities that could be harmful to users. The discussion also sheds light on new threats in the travel booking sector, where scams are rising and connecting to broader ransomware issues. Additionally, a vulnerability in Zendesk has been uncovered, allowing unauthorized access to user information.


