

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
Johannes B. Ullrich
A brief daily summary of what is important in information security. The podcast is published every weekday and designed to get you ready for the day with a brief, usually 5 minute long, summary of current network security related events. The content is late breaking, educational and based on listener input as well as on input received by the SANS Internet Stormcenter. You may submit questions and comments via our contact form at https://isc.sans.edu/contact.html .
Episodes
Mentioned books

Apr 2, 2024 • 7min
ISC StormCast for Tuesday, April 2nd, 2024
Explore the chilling details of a backdoor in xz-utils that poses serious security risks. Learn about infostealers threatening macOS users and the rise of malicious browser downloads disguised as Chrome. Discover a new tool for analyzing CSV files amid these cybersecurity threats. The podcast also highlights suspicious social media behaviors linked to compromised repositories.

Apr 1, 2024 • 8min
ISC StormCast for Monday, April 1st, 2024
A serious backdoor vulnerability has been discovered in the XC utils package, raising concerns for users of the x86-64 architecture. Experts dive deep into the technical details and potential impact of this flaw. They also discuss social engineering attempts to incorporate backdoors into software distributions, highlighting the importance of cybersecurity vigilance. The conversation emphasizes necessary precautions and the broader implications for software security in today’s landscape.

Mar 29, 2024 • 6min
ISC StormCast for Friday, March 29th, 2024
Dive into the intricate world of obfuscated malware, where JavaScript masks a remote access Trojan as an innocent invoice. Discover critical patches for TeamCity that safeguard against serious vulnerabilities. Learn about alarming exploits in Okta Verify for Windows, allowing arbitrary code execution. Explore the worrying rise of zero-day vulnerabilities that pose major threats to enterprise systems and a spotlight on the expanding risks from commercial surveillance vendors.

Mar 28, 2024 • 5min
ISC StormCast for Thursday, March 28th, 2024
The discussion delves into serious security vulnerabilities in Apache OFBiz, which could allow remote code execution by hackers. It also highlights flaws in the Unix 'wall' command that may enable unauthorized message disclosure. Additionally, the podcast addresses alarming trends in 'MFA Bombing' attacks targeting Apple users, shedding light on how these attacks exploit users' authentication fatigue. Security strategies to combat these threats are recommended, enhancing safeguarding measures.

Mar 27, 2024 • 6min
ISC StormCast for Wednesday, March 27th, 2024
A new tool simplifies forensic analysis on Linux systems, making investigations more efficient. There's a deep dive into a suspicious NuGet package that targets industrial systems. The podcast reveals alarming ShadowRay attacks on AI workloads currently exploited in the wild. Additionally, TheMoon malware is wreaking havoc by infecting thousands of ASUS routers for proxy services. Finally, the conversation covers vulnerabilities in the QUIC protocol and persistent malware threats in the cybersecurity landscape.

Mar 26, 2024 • 6min
ISC StormCast for Tuesday, March 26th, 2024
Discover the latest updates on cybersecurity tools that enhance network protection and process IP addresses efficiently. Apple rolls out urgent patches for critical vulnerabilities affecting macOS and iOS. A concerning hack targeting GitHub has affected around 150,000 developers, illustrating the importance of vigilance. Plus, hear about crucial fixes in OpenVPN that highlight the necessity of keeping software up to date. Stay informed and secure in the ever-evolving world of cybersecurity!

Mar 25, 2024 • 6min
ISC StormCast for Monday, March 25th, 2024
Discover enhancements in Cobalt Strike beacons that boost incident response capabilities. Dive into a novel UDP-based attack affecting application layers, causing endless response loops. Uncover vulnerabilities in network protocols tied to DNS error messages that can create infinite loops. Learn how these issues impact major vendors like Cisco and Microsoft, alongside key security patches aimed at fixing memory leaks in Windows servers.

Mar 22, 2024 • 6min
ISC StormCast for Friday, March 22nd, 2024
Delve into the world of geolocation data and the significance of Geofeed in WHOIS records. Discover Apple's latest security updates and a new bug that could affect users. Explore GitHub's innovative AutoFix feature, powered by AI, designed to streamline code corrections. Lastly, get the scoop on vulnerabilities found in Fortinet and Ivanti products, detailing potential risks and necessary precautions. This episode is a must-listen for anyone interested in the latest in cybersecurity!

Mar 21, 2024 • 6min
ISC StormCast for Thursday, March 21st, 2024
Discover the details of a new buffer overflow vulnerability in Fortinet devices that's making waves in the cyber world. As tax season approaches, find out how scammers are ramping up phishing attacks, particularly targeting unsuspecting users. The discussion also sheds light on the exploitation risks linked to DHCP server configurations, raising awareness about potential privilege escalation in Windows domains. Stay informed and prepared to tackle these pressing cybersecurity challenges!

Mar 20, 2024 • 5min
ISC StormCast for Wednesday, March 20th, 2024
Delve into the alarming tactics of attackers targeting firewall vulnerabilities and the evolving cybersecurity landscape. Discover a newly uncovered exploit that raises concerns, paralleled by a surge in crypto scams highlighted by the FBI. Also discussed are the compatibility issues and software troubles following the recent macOS 14.4 update. Stay informed about these pressing cybersecurity challenges!


