TopPodcast.com
Menu
  • Home
  • Top Charts
  • Top Networks
  • Top Apps
  • Top Independents
  • Top Podfluencers
  • Top Picks
    • Top Business Podcasts
    • Top True Crime Podcasts
    • Top Finance Podcasts
    • Top Comedy Podcasts
    • Top Music Podcasts
    • Top Womens Podcasts
    • Top Kids Podcasts
    • Top Sports Podcasts
    • Top News Podcasts
    • Top Tech Podcasts
    • Top Crypto Podcasts
    • Top Entrepreneurial Podcasts
    • Top Fantasy Sports Podcasts
    • Top Political Podcasts
    • Top Science Podcasts
    • Top Self Help Podcasts
    • Top Sports Betting Podcasts
    • Top Stocks Podcasts
  • Podcast News
  • About Us
  • Podcast Advertising
  • Contact
Not in our directory?
Add Show Here
Podcast Equipment
Center

toppodcastlogoOur TOPPODCAST Picks

  • Comedy
  • Crypto
  • Sports
  • News
  • Politics
  • True Crime
  • Business
  • Finance

Follow Us

toppodcastlogoStay Connected

    View Top 200 Chart
    Back to Rankings Page
    News

    SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

    A brief daily summary of what is important in information security. The podcast is published every weekday and designed to get you ready for the day with a brief, usually 5 minute long, summary of current network security related events. The content is late breaking, educational and based on listener input as well as on input received by the SANS Internet Stormcenter. You may submit questions and comments via our contact form at https://isc.sans.edu/contact.html .

    Advertise

    Copyright: © (c) SANS Institute 2024 This work is licensed under a Creative Commons License - Attribution-NonCommercial-ShareAlike - https://creativecommons.org/licenses/by-nc-sa/4.0/

    • Apple Podcasts
    • Google Play
    • Spotify

    Latest Episodes:
    ISC StormCast for Friday, October 25th, 2024 Oct 25, 2024
    Show notes

    Development Features Enabled in Production
    https://isc.sans.edu/diary/Development%20Features%20Enabled%20in%20Prodcution/31380
    Large-scale brute-force activity targeting VPNs, SSH services with commonly used login credentials
    https://blog.talosintelligence.com/large-scale-brute-force-activity-targeting-vpns-ssh-services-with-commonly-used-login-credentials/
    Cisco Secure Firewall Management Center Software Command Injection Vulnerability
    https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-fmc-cmd-inj-v3AWDqN7
    Exposing the Danger Within: Hardcoded Cloud Credentials in Popular Mobile Apps
    https://www.security.com/threat-intelligence/exposing-danger-within-hardcoded-cloud-credentials-popular-mobile-apps


    ISC StormCast for Thursday, October 24th, 2024 Oct 24, 2024
    Show notes

    Everybody Loves Bash Scripts Including Attackers
    https://isc.sans.edu/diary/Everybody%20Loves%20Bash%20Scripts.%20Including%20Attackers./31376
    Fortimanager Exploited Vulnerability
    https://www.fortiguard.com/psirt/FG-IR-24-423
    Sharepoint Exploit
    https://www.cisa.gov/news-events/alerts/2024/10/22/cisa-adds-one-known-exploited-vulnerability-catalog
    https://github.com/testanull/MS-SharePoint-July-Patch-RCE-PoC
    OpenSSL Vulnerability
    https://openssl-library.org/news/secadv/20241016.txt
    Reduced Certificate Lifetime
    https://github.com/cabforum/servercert/pull/553


    ISC StormCast for Wednesday, October 23rd, 2024 Oct 23, 2024
    Show notes

    How much HTTP (not HTTPS) Traffic is Traversing Your Perimeter?
    https://isc.sans.edu/diary/How%20much%20HTTP%20%28not%20HTTPS%29%20Traffic%20is%20Traversing%20Your%20Perimeter%3F/31372
    VMSA-2024-0019:VMware vCenter Server updates address heap-overflow and privilege escalation vulnerabilities (CVE-2024-38812, CVE-2024-38813)
    https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/24968
    Unifi Security Advisory Bulletin 043
    https://community.ui.com/releases/Security-Advisory-Bulletin-043-043/28e45c75-314e-4f07-a4f3-d17f67bd53f7
    Fake attachment. Roundcube mail server attacks exploit CVE-2024-37383 vulnerability.
    https://global.ptsecurity.com/analytics/pt-esc-threat-intelligence/fake-attachment-roundcube-mail-server-attacks-exploit-cve-2024-37383-vulnerability
    Atlassian Security Bulletin - October 15 2024
    https://confluence.atlassian.com/security/security-bulletin-october-15-2024-1442910972.html
    OneDev Arbitrary file reading for unauthenticated user
    https://github.com/theonedev/onedev/security/advisories/GHSA-7wg5-6864-v489


    ISC StormCast for Tuesday, October 22nd, 2024 Oct 22, 2024
    Show notes

    A Network Nerd's Take on Emergency Preparedness
    https://isc.sans.edu/diary/A%20Network%20Nerd%27s%20Take%20on%20Emergency%20Preparedness/31356
    HM Surf Vulnerability Access to Camera Exploited CVE-2024-44133
    https://www.microsoft.com/en-us/security/blog/2024/10/17/new-macos-vulnerability-hm-surf-could-lead-to-unauthorized-data-access/
    Fortinet releases patches for undisclosed critical FortiManager vulnerability
    https://www.helpnetsecurity.com/2024/10/21/fortimanager-critical-vulnerability/
    ScienceLogic Vulnerability
    https://rackspace.service-now.com/system_status?id=detailed_status&service=4dafca5a87f41610568b206f8bbb35a6
    https://docs.sciencelogic.com/latest/Content/Web_Admin_and_Accounts/System_Administration/sys_admin_system_upgrade.htm


    ISC StormCast for Monday, October 21st, 2024 Oct 21, 2024
    Show notes

    Microsoft 365: Partially incomplete log data due to monitoring agent issue
    https://m365admin.handsontek.net/multiple-services-partially-incomplete-log-data-due-to-monitoring-agent-issue/
    End-to-End Encrytped Cloud Storage in the Wild: A Broken Ecosystem
    https://brokencloudstorage.info/paper.pdf
    ESET Branded Malware
    https://x.com/ESETresearch/status/1847192384448172387
    Synology Update
    https://www.synology.com/en-us/security/advisory/Synology_SA_24_17
    Spring Framework Update CVe-2024-38819 CVE-2024-38820
    https://spring.io/blog/2024/10/17/spring-framework-cve-2024-38819-and-cve-2024-38820-published
    Grafana Security Release CVE-2024-9264
    https://grafana.com/blog/2024/10/17/grafana-security-release-critical-severity-fix-for-cve-2024-9264/


    ISC StormCast for Friday, October 18th, 2024 Oct 18, 2024
    Show notes

    Scanning Activity from Subnet 15.184.0.0/16.
    https://isc.sans.edu/diary/Scanning%20Activity%20from%20Subnet%2015.184.0.0%2016/31362
    Gatekeeper Bypass
    /unit42.paloaltonetworks.com/gatekeeper-bypass-macos/
    Oracle Critical Patch Update
    https://www.oracle.com/security-alerts/cpuoct2024.html
    Cisco ATA 190 Series Analog Telephone Adapter Firmware Vulnerabilities
    https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ata19x-multi-RDTEqRsy
    SAP Vulnerability
    https://redrays.io/blog/poc-sap-note-3433192-code-injection-vulnerability-in-sap-netweaver-as-java/
    Dept. of Commerce Sites Advertising Medication
    https://x.com/tliston/status/1833542884047654984


    ISC StormCast for Thursday, October 17th, 2024 Oct 17, 2024
    Show notes

    The Top 10 Not So Common SSH Usernames and Passwords
    https://isc.sans.edu/diary/The%20Top%2010%20Not%20So%20Common%20SSH%20Usernames%20and%20Passwords/31360
    CISA Product Security Bad Practices
    https://www.cisa.gov/resources-tools/resources/product-security-bad-practices
    Kubernetes Image Builder Vulnerability CVE-2024-9486 CVE-2024-9594
    https://discuss.kubernetes.io/t/security-advisory-cve-2024-9486-and-cve-2024-9594-vm-images-built-with-kubernetes-image-builder-use-default-credentials/30119
    Solarwinds Hardcoded Password Exploited CVE-2024-28987
    https://www.bleepingcomputer.com/news/security/solarwinds-web-help-desk-flaw-is-now-exploited-in-attacks/
    Bypassing noexec and executing arbitrary binaries
    https://iq.thc.org/bypassing-noexec-and-executing-arbitrary-binaries
    Workshop Website:
    https://www.sansapi.com/
    https://www.sansapi.com/docs


    ISC StormCast for Wednesday, October 16th, 2024 Oct 16, 2024
    Show notes

    Angular-base64-upload Demo Script Exploited
    https://isc.sans.edu/diary/Angular-base64-upload%20Demo%20Script%20Exploited%20%28CVE-2024-42640%29/31354
    Quantum Annealing Public Key Cryptographic Attack Algorithm Based on D-Wave Advantage
    http://cjc.ict.ac.cn/online/onlinepaper/wc-202458160402.pdf
    EDRSilencer
    https://github.com/netero1010/EDRSilencer
    Synchronizing Passkeys
    https://fidoalliance.org/specifications-credential-exchange-specifications/


    ISC StormCast for Tuesday, October 15th, 2024 Oct 15, 2024
    Show notes

    Phishing Page Delivered Through a Blob URL
    https://isc.sans.edu/diary/Phishing%20Page%20Delivered%20Through%20a%20%20Blob%20URL/31350
    Fortinet Fortigate CVE 2024-23113 deep dive
    https://labs.watchtowr.com/fortinet-fortigate-cve-2024-23113-a-super-complex-vulnerability-in-a-super-secure-appliance-in-2024/
    This New Supply Chain Attack Technique Can Trojanize All Your CLI Commands
    https://checkmarx.com/blog/this-new-supply-chain-attack-technique-can-trojanize-all-your-cli-commands/


    ISC StormCast for Monday, October 14th, 2024 Oct 14, 2024
    Show notes

    Windows PPTP and L2TP Deprecation
    https://techcommunity.microsoft.com/t5/windows-server-news-and-best/pptp-and-l2tp-deprecation-a-new-era-of-secure-connectivity/ba-p/4263956
    BIG-IP LTM Systems Unencrypted Cookie Exploitation
    https://www.cisa.gov/news-events/alerts/2024/10/10/best-practices-configure-big-ip-ltm-systems-encrypt-http-persistence-cookies
    https://www.welivesecurity.com/en/eset-research/telekopye-hits-new-hunting-ground-hotel-booking-scams/
    https://www.welivesecurity.com/en/eset-research/telekopye-hits-new-hunting-ground-hotel-booking-scams/


    Previous 1 45 46 47 48 49 253 Next

    Related Podcasts

    Inside Strategic Coach: Connecting Entrepreneurs With What Really Matters

    1

    Inside Strategic Coach: Connecting Entrepreneurs With What Really Matters Business
    WSJ Your Money Briefing

    2

    WSJ Your Money Briefing Business
    FORTUNE Unfiltered with Aaron Task

    3

    FORTUNE Unfiltered with Aaron Task Business
    FORTUNE OnStage Presents: The Most Powerful Women

    4

    FORTUNE OnStage Presents: The Most Powerful Women Business
    Slate Money

    5

    Slate Money Business
    In The Dark – The New Yorker

    6

    In The Dark – The New Yorker Business News
    footer-logo

    Contact Us

    Toll Free: 844-670-7747

    Links

    • Home
    • Top Charts
    • Networks
    • Apps
    • Independents Podcasts
    • Podcast Advertising
    • Podcast News
    • Contact Us
    • About Us
    • Analytics & Insights

    Stay Connected

      Privacy, Terms of Use & Our Code of Ethics Protecting Content Creators Copyrights