A brief daily summary of what is important in information security. The podcast is published every weekday and designed to get you ready for the day with a brief, usually 5 minute long, summary of current network security related events. The content is late breaking, educational and based on listener input as well as on input received by the SANS Internet Stormcenter. You may submit questions and comments via our contact form at https://isc.sans.edu/contact.html .

Similar Podcasts

Thinking Elixir Podcast

Thinking Elixir Podcast
The Thinking Elixir podcast is a weekly show where we talk about the Elixir programming language and the community around it. We cover news and interview guests to learn more about projects and developments in the community.

Elixir Outlaws

Elixir Outlaws
Elixir Outlaws is an informal discussion about interesting things happening in Elixir. Our goal is to capture the spirit of a conference hallway discussion in a podcast.

Linux For Everyone

Linux For Everyone
A show about the thrilling world of desktop Linux, open-source software, and the community creating it. For beginners and veterans alike! Hosted by Jason Evangelho, Jerry Morrison and Schykle.

ISC StormCast for Thursday, April 23rd 2020

April 22, 2020 6:04 5.09 MB Downloads: 0

iOS Mail 0Day https://blog.zecops.com/vulnerabilities/unassisted-ios-attacks-via-mobilemail-maild-in-the-wild/ Zoom 5 To Be Released Shortly Addressing Encryption Issues https://blog.zoom.us/wordpress/2020/04/22/zoom-hits-milestone-on-90-day-security-plan-releases-zoom-5-0/ OpenSSL Fixes DOS Flaw https://www.openssl.org/news/secadv/20200421.txt

ISC StormCast for Thursday, April 23rd 2020

April 22, 2020 6:04 5.09 MB Downloads: 0

iOS Mail 0Day https://blog.zecops.com/vulnerabilities/unassisted-ios-attacks-via-mobilemail-maild-in-the-wild/ Zoom 5 To Be Released Shortly Addressing Encryption Issues https://blog.zoom.us/wordpress/2020/04/22/zoom-hits-milestone-on-90-day-security-plan-releases-zoom-5-0/ OpenSSL Fixes DOS Flaw https://www.openssl.org/news/secadv/20200421.txt

ISC StormCast for Wednesday, April 22nd 2020

April 21, 2020 5:56 4.99 MB Downloads: 0

SpectX: Log Parser for DFIR https://isc.sans.edu/forums/diary/SpectX+Log+Parser+for+DFIR/26040/ Microsoft Patches Autodesk Library in Office https://www.autodesk.com/trust/security-advisories/adsk-sa-2020-0002 https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/ADV200004 Stripe Data Collection https://mtlynch.io/stripe-recording-its-customers/ IBM Data Risk Manager Vulnerabilities https://github.com/pedrib/PoC/blob/master/advisories/IBM/ibm_drm/ibm_drm_rce.md

ISC StormCast for Wednesday, April 22nd 2020

April 21, 2020 5:56 4.99 MB Downloads: 0

SpectX: Log Parser for DFIR https://isc.sans.edu/forums/diary/SpectX+Log+Parser+for+DFIR/26040/ Microsoft Patches Autodesk Library in Office https://www.autodesk.com/trust/security-advisories/adsk-sa-2020-0002 https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/ADV200004 Stripe Data Collection https://mtlynch.io/stripe-recording-its-customers/ IBM Data Risk Manager Vulnerabilities https://github.com/pedrib/PoC/blob/master/advisories/IBM/ibm_drm/ibm_drm_rce.md

ISC StormCast for Tuesday, April 21st 2020

April 20, 2020 5:47 4.86 MB Downloads: 0

KPOT AutoIt Script: Analysis https://isc.sans.edu/forums/diary/KPOT+AutoIt+Script+Analysis/26012/ FPGA Vulnerablity https://www.usenix.org/conference/usenixsecurity20/presentation/ender Nagios XI Vulnerability https://exchange.xforce.ibmcloud.com/vulnerabilities/179406

ISC StormCast for Tuesday, April 21st 2020

April 20, 2020 5:47 4.86 MB Downloads: 0

KPOT AutoIt Script: Analysis https://isc.sans.edu/forums/diary/KPOT+AutoIt+Script+Analysis/26012/ FPGA Vulnerablity https://www.usenix.org/conference/usenixsecurity20/presentation/ender Nagios XI Vulnerability https://exchange.xforce.ibmcloud.com/vulnerabilities/179406

ISC StormCast for Monday, April 20th 2020

April 19, 2020 5:34 4.68 MB Downloads: 0

Weaponized RTF Document Generator Mailer in PowerShell https://isc.sans.edu/forums/diary/Weaponized+RTF+Document+Generator+Mailer+in+PowerShell/26030/ Microsoft Fixes Bad Anti-Malware Signatures https://www.microsoft.com/en-us/wdsi/definitions/antimalware-definition-release-notes Sophos Pulls Bad Firmware Update https://community.sophos.com/kb/en-us/135383 Credentials Stolen from Pulse Secure VPN Abused https://www.us-cert.gov/ncas/alerts/aa20-107a Chrome Update https://chromereleases.googleblog.com/2020/04/stable-channel-update-for-desktop_15.html

ISC StormCast for Monday, April 20th 2020

April 19, 2020 5:34 4.68 MB Downloads: 0

Weaponized RTF Document Generator Mailer in PowerShell https://isc.sans.edu/forums/diary/Weaponized+RTF+Document+Generator+Mailer+in+PowerShell/26030/ Microsoft Fixes Bad Anti-Malware Signatures https://www.microsoft.com/en-us/wdsi/definitions/antimalware-definition-release-notes Sophos Pulls Bad Firmware Update https://community.sophos.com/kb/en-us/135383 Credentials Stolen from Pulse Secure VPN Abused https://www.us-cert.gov/ncas/alerts/aa20-107a Chrome Update https://chromereleases.googleblog.com/2020/04/stable-channel-update-for-desktop_15.html

ISC StormCast for Friday, April 17th 2020

April 16, 2020 5:50 4.9 MB Downloads: 0

Applocker vs. Living off the Land Attacks https://isc.sans.edu/forums/diary/Using+AppLocker+to+Prevent+Living+off+the+Land+Attacks/26032/ Netlink GPON 0-Day https://blog.netlab.360.com/multiple-fiber-routers-are-being-compromised-by-botnets-using-0-day-en/ Windows Security Crashing After Definition Update https://www.askwoody.com/2020/reports-of-windows-security-nee-microsoft-security-essentials-crashing-after-installing-this-mornings-definition-updates/ 700 Malicious Ruby Gems Found https://thehackernews.com/2020/04/rubygem-typosquatting-malware.html vCenter Exploit for CVE-2020-3952 https://www.guardicore.com/2020/04/pwning-vmware-vcenter-cve-2020-3952/

ISC StormCast for Friday, April 17th 2020

April 16, 2020 5:50 4.9 MB Downloads: 0

Applocker vs. Living off the Land Attacks https://isc.sans.edu/forums/diary/Using+AppLocker+to+Prevent+Living+off+the+Land+Attacks/26032/ Netlink GPON 0-Day https://blog.netlab.360.com/multiple-fiber-routers-are-being-compromised-by-botnets-using-0-day-en/ Windows Security Crashing After Definition Update https://www.askwoody.com/2020/reports-of-windows-security-nee-microsoft-security-essentials-crashing-after-installing-this-mornings-definition-updates/ 700 Malicious Ruby Gems Found https://thehackernews.com/2020/04/rubygem-typosquatting-malware.html vCenter Exploit for CVE-2020-3952 https://www.guardicore.com/2020/04/pwning-vmware-vcenter-cve-2020-3952/

ISC StormCast for Thursday, April 16th 2020

April 15, 2020 5:27 4.58 MB Downloads: 0

Hunting Without IOCs https://isc.sans.edu/forums/diary/No+IOCs+No+Problem+Getting+a+Start+Hunting+for+Malicious+Office+Files/26026/ Cloudflare/Online Banking Outages https://twitter.com/eastdakota/status/1250520852354854912 Crypto Currency Stealing Browser Extensions https://medium.com/mycrypto/discovering-fake-browser-extensions-that-target-users-of-ledger-trezor-mew-metamask-and-more-e281a2b80ff9

ISC StormCast for Thursday, April 16th 2020

April 15, 2020 5:27 4.58 MB Downloads: 0

Hunting Without IOCs https://isc.sans.edu/forums/diary/No+IOCs+No+Problem+Getting+a+Start+Hunting+for+Malicious+Office+Files/26026/ Cloudflare/Online Banking Outages https://twitter.com/eastdakota/status/1250520852354854912 Crypto Currency Stealing Browser Extensions https://medium.com/mycrypto/discovering-fake-browser-extensions-that-target-users-of-ledger-trezor-mew-metamask-and-more-e281a2b80ff9

ISC StormCast for Wednesday, April 15th 2020

April 14, 2020 5:00 4.2 MB Downloads: 0

Microsoft Patch Tuesday https://isc.sans.edu/forums/diary/Microsoft+April+2020+Patch+Tuesday/26022/ Adobe Security Bulletins https://helpx.adobe.com/security.html Microsoft Extending EOL For Windows 10 1709/1809 https://support.microsoft.com/en-us/help/4557164/lifecycle-changes-to-end-of-support-and-servicing-dates Dell Safe BIOS https://blog.dellemc.com/en-us/dell-technologies-bolsters-pc-security-todays-remote-workers/

ISC StormCast for Wednesday, April 15th 2020

April 14, 2020 5:00 4.2 MB Downloads: 0

Microsoft Patch Tuesday https://isc.sans.edu/forums/diary/Microsoft+April+2020+Patch+Tuesday/26022/ Adobe Security Bulletins https://helpx.adobe.com/security.html Microsoft Extending EOL For Windows 10 1709/1809 https://support.microsoft.com/en-us/help/4557164/lifecycle-changes-to-end-of-support-and-servicing-dates Dell Safe BIOS https://blog.dellemc.com/en-us/dell-technologies-bolsters-pc-security-todays-remote-workers/

ISC StormCast for Tuesday, April 14th 2020

April 13, 2020 6:20 5.32 MB Downloads: 0

Comparing the same Phishing Campaign 3 Months Appart https://isc.sans.edu/forums/diary/Look+at+the+same+phishing+campaign+3+months+apart/26018/ Setting 3D Printers On Fire https://www.coalfire.com/The-Coalfire-Blog/April-2020/With-IoT-Common-Devices-Pose-New-Threats Junos OS: vMX Default Credentials https://kb.juniper.net/InfoCenter/index?page=content&id=JSA10998 DNS is Changing: So What? (@Mic Webinar) https://www.sans.org/webcasts/113635