TopPodcast.com
Menu
  • Home
  • Top Charts
  • Top Networks
  • Top Apps
  • Top Independents
  • Top Podfluencers
  • Top Picks
    • Top Business Podcasts
    • Top True Crime Podcasts
    • Top Finance Podcasts
    • Top Comedy Podcasts
    • Top Music Podcasts
    • Top Womens Podcasts
    • Top Kids Podcasts
    • Top Sports Podcasts
    • Top News Podcasts
    • Top Tech Podcasts
    • Top Crypto Podcasts
    • Top Entrepreneurial Podcasts
    • Top Fantasy Sports Podcasts
    • Top Political Podcasts
    • Top Science Podcasts
    • Top Self Help Podcasts
    • Top Sports Betting Podcasts
    • Top Stocks Podcasts
  • Podcast News
  • About Us
  • Podcast Advertising
  • Contact
Not in our directory?
Add Show Here
Podcast Equipment
Center

toppodcastlogoOur TOPPODCAST Picks

  • Comedy
  • Crypto
  • Sports
  • News
  • Politics
  • True Crime
  • Business
  • Finance

Follow Us

toppodcastlogoStay Connected

    View Top 200 Chart
    Back to Rankings Page
    News

    SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

    A brief daily summary of what is important in information security. The podcast is published every weekday and designed to get you ready for the day with a brief, usually 5 minute long, summary of current network security related events. The content is late breaking, educational and based on listener input as well as on input received by the SANS Internet Stormcenter. You may submit questions and comments via our contact form at https://isc.sans.edu/contact.html .

    Advertise

    Copyright: © (c) SANS Institute 2024 This work is licensed under a Creative Commons License - Attribution-NonCommercial-ShareAlike - https://creativecommons.org/licenses/by-nc-sa/4.0/

    • Apple Podcasts
    • Google Play
    • Spotify

    Latest Episodes:
    SANS Stormcast Wednesday, November 12th, 2025: Microsoft Patch Tuesday; Gladinet Triofox Vulnerability; SAP Patches Nov 12, 2025
    Show notes
    Microsoft Patch Tuesday for November 2025
    https://isc.sans.edu/diary/Microsoft+Patch+Tuesday+for+November+2025/32468/
    Gladinet Triofox Vulnerability
    Triofox uses the host header in lieu of proper access control, allowing an attacker to access the page managing administrators by simply setting the host header to localhost.
    https://cloud.google.com/blog/topics/threat-intelligence/triofox-vulnerability-cve-2025-12480/
    SAP November 2025 Patch Day
    SAP fixed a critical vulnerability, fixed default credentials in its SQL Anywhere Monitor
    https://onapsis.com/blog/sap-security-patch-day-november-2025/
    Ivanti Endpoint Manager Updates
    https://forums.ivanti.com/s/article/Security-Advisory-EPM-November-2025-for-EPM-2024?language=en_US

    SANS Stormcast Tuesday, November 11th, 2025: 3CX Related Scans; Watchguard Default Password; Nov 11, 2025
    Show notes
    It isn t always defaults: Scans for 3CX Usernames
    Our honeypots detected scans for usernames that may be related to 3CX business phone systems
    https://isc.sans.edu/diary/It%20isn%27t%20always%20defaults%3A%20Scans%20for%203CX%20usernames/32464
    Watchguard Default Password Controversy
    A CVE number was assigned to a default password commonly used in Watchguard products. This was a documented username and password that was recently removed in a firmware upgrade.
    https://github.com/cyberbyte000/CVE-2025-59396/blob/main/CVE-2025-59396.txt
    https://nvd.nist.gov/vuln/detail/CVE-2025-59396
    JavaScript expr-eval Vulnerability
    The JavaScript expr-eval library was vulnerable to a code execution issue.
    https://www.kb.cert.org/vuls/id/263614

    SANS Stormcast Monday, November 10th, 2025: Code Repo Requests; Time Delayed ICS Attacks; Encrypted LLM Traffic Sidechannel Attacks Nov 10, 2025
    Show notes
    Honeypot Requests for Code Repository
    Attackers continue to scan websites for source code repositories. Keep your repositories outside your document root and proactively scan your own sites.
    https://isc.sans.edu/diary/Honeypot%3A%20Requests%20for%20%28Code%29%20Repositories/32460
    Malicious NuGet Packages Deliver Time-Delayed Destructive Payloads
    Newly discovered malicious .NET packages attempt to deliver a time-delayed attack targeting ICS systems.
    https://socket.dev/blog/9-malicious-nuget-packages-deliver-time-delayed-destructive-payloads
    Side Channel Leaks in Encrypted Traffic to LLMs
    Traffic to LLMs can be profiled to discover the nature of prompts sent by a user based on the amount and structure of the encrypted data.
    https://www.microsoft.com/en-us/security/blog/2025/11/07/whisper-leak-a-novel-side-channel-cyberattack-on-remote-language-models/

    SANS Stormcast Friday, November 7th, 2025: PowerShell Log Correlation; RondoBox Disected; Google Chrome and Cisco Patches Nov 07, 2025
    Show notes
    Binary Breadcrumbs: Correlating Malware Samples with Honeypot Logs Using PowerShell [Guest Diary]
    Windows, with PowerShell, has a great scripting platform to match common Linux/Unix command line utilities.
    https://isc.sans.edu/diary/Binary%20Breadcrumbs%3A%20Correlating%20Malware%20Samples%20with%20Honeypot%20Logs%20Using%20PowerShell%20%5BGuest%20Diary%5D/32454
    RondoDox v2 Increases Exploits
    The RondoDox (or RondoWorm) added a substantial amount of new exploits to its repertoire.
    https://beelzebub.ai/blog/rondo-dox-v2/
    Google Chrome Updates
    Google released an update for Google Chrome addressing five vulnerabilities.
    https://chromereleases.googleblog.com/2025/11/stable-channel-update-for-desktop.html
    Cisco Unified Contact Center Express Remote Code Execution Vulnerabilities
    Cisco patched two critical vulnerabilities in its Contact Center Express software. These vulnerabilities may lead to a full system compromise.
    https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cc-unauth-rce-QeN8h7mQ

    SANS Stormcast Thursday, November 6th, 2025: Domain API Update; Teams Spoofing; VShell Report Nov 06, 2025
    Show notes
    Updates to Domainname API
    Some updates to our domainname API will make it more flexible and make it easier and faster to get the complete dataset.
    https://isc.sans.edu/diary/Updates%20to%20Domainname%20API/32452
    Microsoft Teams Impersonation and Spoofing Vulnerabilities
    Checkpoint released details about recently patched spoofing and impersonation vulnerabilities in Microsoft Teams
    https://research.checkpoint.com/2025/microsoft-teams-impersonation-and-spoofing-vulnerabilities-exposed/
    NViso Report: VSHELL
    NViso published an amazingly detailed report describing the remote control implant VSHELL. The report includes details about the inner workings of the tool as well as detection ideas.
    https://www.nviso.eu/blog/nviso-analyzes-vshell-post-exploitation-tool

    SANS Stormcast Wednesday, November 5th, 2025: Apple Patches; Exploits against Trucking and Logistic; Google Android Patches Nov 05, 2025
    Show notes
    Apple Patches Everything, Again
    Apple released a minor OS upgrade across its lineup, fixing a number of security vulnerabilities.
    https://isc.sans.edu/diary/Apple%20Patches%20Everything%2C%20Again/32448
    Remote Access Tools Used to Compromise Trucking and Logistics
    Attackers infect trucking and logistics companies with regular remote management tools to inject malware into other companies or learn about high-value loads in order to steal them.
    https://www.proofpoint.com/us/blog/threat-insight/remote-access-real-cargo-cybercriminals-targeting-trucking-and-logistics
    Google Android Patch Day
    Google released its usual monthly Android updates this week
    https://source.android.com/docs/security/bulletin/2025-11-01

    SANS Stormcast Tuesday, November 4th, 2025: XWiki SolrSearch Exploits and Rapper Feud; AMD Zen 5 RDSEED Bug; More Malicious Open VSX Extensions Nov 04, 2025
    Show notes
    XWiki SolrSearch Exploit Attempts CVE-2025-24893
    We have detected a number of exploit attempts against XWiki taking advantage of a vulnerability that was added to the KEV list on Friday.
    https://isc.sans.edu/diary/XWiki%20SolrSearch%20Exploit%20Attempts%20%28CVE-2025-24893%29%20with%20link%20to%20Chicago%20Gangs%20Rappers/32444
    AMD Zen 5 Random Number Generator Bug
    The RDSEED function for AMD s Zen 5 processors does return 0 more often than it should.
    https://www.amd.com/en/resources/product-security/bulletin/amd-sb-7055.html
    SleepyDuck malware invades Cursor through Open VSX
    Yet another Open VSX extension stealing crypto credentials
    https://secureannex.com/blog/sleepyduck-malware/

    SANS Stormcast Monday, November 3rd, 2025: Port 8530/8531 Scans; BADCANDY Webshells; Open VSX Security Improvements Nov 03, 2025
    Show notes
    Scans for WSUS: Port 8530/8531 TCP, CVE-2025-59287
    We did observe an increase in scans for TCP ports 8530 and 8531. These ports are associated with WSUS and the scans are likely looking for servers vulnerable to CVE-2025-59287
    https://isc.sans.edu/diary/Scans%20for%20Port%208530%208531%20%28TCP%29.%20Likely%20related%20to%20WSUS%20Vulnerability%20CVE-2025-59287/32440
    BADCANDY Webshell Implant Deployed via
    The Australian Signals Directorate warns that they still see Cisco IOS XE devices not patches for CVE-2023-20198. A threat actor is now using this vulnerability to deploy the BADCANDY implant for persistent access
    https://www.cyber.gov.au/about-us/view-all-content/alerts-and-advisories/badcandy
    Improvements to Open VSX Security
    In reference to the Glassworm incident, OpenVSX published a blog post outlining some of the security improvements they will make to prevent a repeat of this incident.
    https://blogs.eclipse.org/post/mika l-barbero/open-vsx-security-update-october-2025

    SANS Stormcast Friday, October 31st, 2025: Bug Bounty Headers; Exchange hardening; MOVEIt vulnerability Oct 31, 2025
    Show notes
    X-Request-Purpose: Identifying "research" and bug bounty related scans?
    Our honeypots captured a few requests with bug bounty specific headers. These headers are meant to make it easier to identify requests related to bug bounty, and they are supposed to identify the researcher conducting the scans
    https://isc.sans.edu/diary/X-Request-Purpose%3A%20Identifying%20%22research%22%20and%20bug%20bounty%20related%20scans%3F/32436
    Proton Breach Observatory
    Proton opened up its breach observatory. This website will collect information about breaches affecting companies that have not yet made the breach public.
    https://proton.me/blog/introducing-breach-observatory
    Microsoft Exchange Server Security Best Practices
    A new document published by a collaboration of national cyber security agencies summarizes steps that should be taken to harden Exchange Server.
    https://www.nsa.gov/Portals/75/documents/resources/cybersecurity-professionals/CSI_Microsoft_Exchange_Server_Security_Best_Practices.pdf?ver=9mpKKyUrwfpb9b9r4drVMg%3d%3d
    MOVEit Vulnerability
    Progress published an advisory for its file transfer program MOVEIt . This software has had heavily exploited vulnerabilities in the past.
    https://community.progress.com/s/article/MOVEit-Transfer-Vulnerability-CVE-2025-10932-October-29-2025

    SANS Stormcast Thursday, October 30th, 2025: Memory Only Filesystems Forensics; Azure Outage; docker-compose patch Oct 30, 2025
    Show notes
    How to Collect Memory-Only Filesystems on Linux Systems
    Getting forensically sound copies of memory-only file systems on Linux can be tricky, as tools like dd do not work.
    https://isc.sans.edu/diary/How%20to%20collect%20memory-only%20filesystems%20on%20Linux%20systems/32432
    Microsoft Azure Front Door Outage
    Today, Microsoft s Azure Front Door service failed, leading to users not being able to authenticate to various Azure-related services.
    https://azure.status.microsoft/en-us/status
    Docker-Compose Vulnerability
    A vulnerability in docker-compose may be used to trick users into creating files outside the docker-compose directory
    https://github.com/docker/compose/security/advisories/GHSA-gv8h-7v7w-r22q

    Previous 1 20 21 22 23 24 253 Next

    Related Podcasts

    Inside Strategic Coach: Connecting Entrepreneurs With What Really Matters

    1

    Inside Strategic Coach: Connecting Entrepreneurs With What Really Matters Business
    WSJ Your Money Briefing

    2

    WSJ Your Money Briefing Business
    FORTUNE Unfiltered with Aaron Task

    3

    FORTUNE Unfiltered with Aaron Task Business
    FORTUNE OnStage Presents: The Most Powerful Women

    4

    FORTUNE OnStage Presents: The Most Powerful Women Business
    Slate Money

    5

    Slate Money Business
    In The Dark – The New Yorker

    6

    In The Dark – The New Yorker Business News
    footer-logo

    Contact Us

    Toll Free: 844-670-7747

    Links

    • Home
    • Top Charts
    • Networks
    • Apps
    • Independents Podcasts
    • Podcast Advertising
    • Podcast News
    • Contact Us
    • About Us
    • Analytics & Insights

    Stay Connected

      Privacy, Terms of Use & Our Code of Ethics Protecting Content Creators Copyrights