Back

Explore every episode of the podcast SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

Dive into the complete episode list for SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast). Each episode is cataloged with detailed descriptions, making it easy to find and explore specific topics. Keep track of all episodes from your favorite podcast and never miss a moment of insightful content.

Rows per page:

1–50 of 2000

TitlePub. DateDuration
SANS Stormcast Thursday Apr 3rd: Juniper Password Scans; Hacking Call Records; End to End Encrypted GMail 03 Apr 202500:09:23

Surge in Scans for Juniper t128 Default User
Lasst week, we dedtect a significant surge in ssh scans for the username t128 . This user is used by Juniper s Session Smart Routing, a product they acquired from 128 Technologies which is the reason for the somewhat unusual username.
https://isc.sans.edu/diary/Surge%20in%20Scans%20for%20Juniper%20%22t128%22%20Default%20User/31824
Vulnerable Verizon API Allowed for Access to Call Logs
An API Verizon offered to users of its call filtering application suffered from an authentication bypass vulnerability allowing users to access any Verizon user s call history. While using a JWT to authenticate the user, the phone number used to retrieve the call history logs was passed in a not-authenticated header.
https://evanconnelly.github.io/post/hacking-call-records/
Google Offering End-to-End Encryption to G-Mail Business Users
Google will add an end-to-end encryption feature to commercial GMail users. However, for non GMail users to read the emails they first must click on a link and log in to Google.
https://workspace.google.com/blog/identity-and-security/gmail-easy-end-to-end-encryption-all-businesses
SANS Stormcast Wednesday Apr 2nd: Apple Updates Everything; 02 Apr 202500:07:16

Apple Patches Everything
Apple released updates for all of its operating systems. Most were released on Monday with WatchOS patches released today on Tuesday. Two already exploited vulnerabilities, which were already patched in the latest iOS and macOS versions, are now patched for older operating systems as well. A total of 145 vulnerabilities were patched.
https://isc.sans.edu/diary/Apple%20Patches%20Everything%3A%20March%2031st%202025%20Edition/31816
VMWare Workstation and Fusion update check broken
VMWare s automatic update check in its Workstation and Fusion products is currently broken due to a redirect added as part of the Broadcom transition
https://community.broadcom.com/vmware-cloud-foundation/question/certificate-error-is-occured-during-connecting-update-server
NIM Postgres Vulnerability
NIM Developers using prepared statements to send SQL queries to Postgres may expose themselves to a SQL injection vulnerability. NIM s Postgres library does not appear to use actual prepared statements; instead, it assembles the code and the user data as a string and passes them on to the database. This may lead to a SQL injection vulnerability
https://blog.nns.ee/2025/03/28/nim-postgres-vulnerability/
SANS Stormcast Thursday Mar 20th: Cisco Smart Licensing Attacks; Vulnerable Drivers again; Synology Advisories Updated 20 Mar 202500:07:09

Exploit Attempts for Cisco Smart Licensing Utility CVE-2024-20439 CVE-2024-20440
Attackers added last September's Cisco Smart Licensing Utility vulnerability to their toolset. These attacks orginate most likely from botnets and the same attackers are scanning for a wide range of additional vulnerabilities. The vulnerability is a static credential issue and trivial to exploit after the credentials were published last fall.
https://isc.sans.edu/diary/Exploit%20Attempts%20for%20Cisco%20Smart%20Licensing%20Utility%20CVE-2024-20439%20and%20CVE-2024-20440/31782
Legacy Driver Exploitation Through Bypassing Certificate Verification
Ahnlab documented a new type of "bring your own vulnerable driver" vulnerability. In this case, an old driver used by an anit-malware and anti-rootkit system can be used to shut down arbitrary processeses, including security related processeses.
https://asec.ahnlab.com/en/86881/
Synology Vulnerability Updates
Synology updates some security advisories it release last year adding addition details and vulnerable systems.
https://www.synology.com/en-global/security/advisory/Synology_SA_24_20
https://www.synology.com/en-global/security/advisory/Synology_SA_24_24
ISC StormCast for Wednesday, October 23rd, 202423 Oct 202400:05:21
How much HTTP (not HTTPS) Traffic is Traversing Your Perimeter?
https://isc.sans.edu/diary/How%20much%20HTTP%20%28not%20HTTPS%29%20Traffic%20is%20Traversing%20Your%20Perimeter%3F/31372
VMSA-2024-0019:VMware vCenter Server updates address heap-overflow and privilege escalation vulnerabilities (CVE-2024-38812, CVE-2024-38813)
https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/24968
Unifi Security Advisory Bulletin 043
https://community.ui.com/releases/Security-Advisory-Bulletin-043-043/28e45c75-314e-4f07-a4f3-d17f67bd53f7
Fake attachment. Roundcube mail server attacks exploit CVE-2024-37383 vulnerability.
https://global.ptsecurity.com/analytics/pt-esc-threat-intelligence/fake-attachment-roundcube-mail-server-attacks-exploit-cve-2024-37383-vulnerability
Atlassian Security Bulletin - October 15 2024
https://confluence.atlassian.com/security/security-bulletin-october-15-2024-1442910972.html
OneDev Arbitrary file reading for unauthenticated user
https://github.com/theonedev/onedev/security/advisories/GHSA-7wg5-6864-v489
ISC StormCast for Thursday, February 18th, 202118 Feb 202100:05:53
ISC StormCast for Wednesday, February 17th, 202117 Feb 202100:05:15
ISC StormCast for Tuesday, February 16th, 202116 Feb 202100:06:39
ISC StormCast for Monday, February 15th, 202115 Feb 202100:07:49
ISC StormCast for Friday, February 12th, 202112 Feb 202100:05:41
ISC StormCast for Thursday, February 11th, 202111 Feb 202100:05:47
ISC StormCast for Wednesday, February 10th, 202110 Feb 202100:06:31
ISC StormCast for Tuesday, February 9th, 202109 Feb 202100:05:49
ISC StormCast for Monday, February 8th, 202108 Feb 202100:06:00
ISC StormCast for Friday, February 5th, 202105 Feb 202100:06:27
ISC StormCast for Tuesday, October 22nd, 202422 Oct 202400:06:26
ISC StormCast for Thursday, February 4th, 202104 Feb 202100:06:03
ISC StormCast for Wednesday, February 3rd, 202103 Feb 202100:06:07
ISC StormCast for Tuesday, February 2nd, 202102 Feb 202100:06:07
ISC StormCast for Monday, February 1st, 202101 Feb 202100:05:25
ISC StormCast for Friday, January 29th, 202129 Jan 202100:06:01
ISC StormCast for Thursday, January 28th, 202128 Jan 202100:06:17
ISC StormCast for Wednesday, January 27th, 202127 Jan 202100:06:41
ISC StormCast for Tuesday, January 26th, 202126 Jan 202100:04:46
ISC StormCast for Monday, January 25th, 202125 Jan 202100:05:57
ISC StormCast for Friday, January 22nd, 202122 Jan 202100:13:50
ISC StormCast for Monday, October 21st, 202421 Oct 202400:05:42
ISC StormCast for Thursday, January 21st, 202121 Jan 202100:07:10
ISC StormCast for Wednesday, January 20th, 202120 Jan 202100:05:49
ISC StormCast for Tuesday, January 19th, 202119 Jan 202100:05:45
Doc And RTF Malicious Document
https://isc.sans.edu/forums/diary/Doc+RTF+Malicious+Document/26996/
Center for Internet Security Cisco NX-OS Benchmark
https://www.cisecurity.org/cis-benchmarks/
Exploit for Shazam Geolocation Vulnerablity
https://ash-king.co.uk/blog/Shazlocate-abusing-CVE-2019-8791-CVE-2019-8792
Voice Phishing and Internal Messaging Systems Used to Escalate Privileges
https://www.ic3.gov/Media/News/2021/210115.pdf
ISC StormCast for Monday, January 18th, 202118 Jan 202100:05:11
ISC StormCast for Friday, January 15th, 202115 Jan 202100:04:52
ISC StormCast for Thursday, January 14th, 202114 Jan 202100:06:02
ISC StormCast for Wednesday, January 13th, 202113 Jan 202100:06:12
ISC StormCast for Tuesday, January 12th, 202112 Jan 202100:05:57
ISC StormCast for Monday, January 11th, 202111 Jan 202100:05:47
ISC StormCast for Friday, January 8th, 202108 Jan 202100:15:50
ISC StormCast for Friday, October 18th, 202418 Oct 202400:05:52
Scanning Activity from Subnet 15.184.0.0/16.
https://isc.sans.edu/diary/Scanning%20Activity%20from%20Subnet%2015.184.0.0%2016/31362
Gatekeeper Bypass
/unit42.paloaltonetworks.com/gatekeeper-bypass-macos/
Oracle Critical Patch Update
https://www.oracle.com/security-alerts/cpuoct2024.html
Cisco ATA 190 Series Analog Telephone Adapter Firmware Vulnerabilities
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ata19x-multi-RDTEqRsy
SAP Vulnerability
https://redrays.io/blog/poc-sap-note-3433192-code-injection-vulnerability-in-sap-netweaver-as-java/
Dept. of Commerce Sites Advertising Medication
https://x.com/tliston/status/1833542884047654984
ISC StormCast for Thursday, January 7th, 202107 Jan 202100:04:23
ISC StormCast for Wednesday, January 6th, 202106 Jan 202100:05:52
ISC StormCast for Tuesday, January 5th, 202105 Jan 202100:05:24
ISC StormCast for Monday, January 4th 202104 Jan 202100:04:22
ISC StormCast for Wednesday, December 30th 202030 Dec 202000:04:16
ISC StormCast for Tuesday, December 29th 202029 Dec 202000:05:28
Extending Android Device Compatibility for Let's Encrypt Certificates
https://letsencrypt.org/2020/12/21/extending-android-compatibility.html
Insufficient Patch for Windows 8.1/10 Print Spooler
https://bugs.chromium.org/p/project-zero/issues/detail?id=2096
Google Docs Vulnerability
https://savebreach.com/stealing-private-documents-through-a-google-docs-bug/
CCC Conferences Virtual
https://streaming.media.ccc.de/rc3
ISC StormCast for Monday, December 28th 202028 Dec 202000:05:35
ISC StormCast for Wednesday, December 23rd 202023 Dec 202000:03:50
ISC StormCast for Tuesday, December 22nd 202022 Dec 202000:06:14
ISC StormCast for Monday, December 21st 202021 Dec 202000:05:31
ISC StormCast for Thursday, October 17th, 202417 Oct 202400:05:38
ISC StormCast for Friday, December 18th 202018 Dec 202000:06:20
Token Authentication Requirements for Git Operations
https://github.blog/2020-12-15-token-authentication-requirements-for-git-operations/
Google Attempting to Speed Up OS Update Adoption
https://android-developers.googleblog.com/2020/12/treble-plus-one-equals-four.html
Trend Micro InterScan Web Security Virtual Appliance Vulnerability
https://success.trendmicro.com/solution/000283077
Malicios Browser Extensions
https://blog.avast.com/malicious-browser-extensions-avast
ISC StormCast for Thursday, December 17th 202017 Dec 202000:06:06
© My Podcast Data