Sinopsis
Daily update on current cyber security threats
Episodios
-
ISC StormCast for Monday, October 7th 2019
07/10/2019 Duración: 05minvisNetwork for Network Data https://isc.sans.edu/forums/diary/visNetwork+for+Network+Data/25390/ Android Priv. Escalation Vulnerability Exploited in the Wild https://bugs.chromium.org/p/project-zero/issues/detail?id=1942 Signal Evesdropping Vulnerability https://bugs.chromium.org/p/project-zero/issues/detail?id=1943
-
ISC StormCast for Friday, October 4th 2019
04/10/2019 Duración: 15minLast Files Ransomware is Back With New Ruse https://isc.sans.edu/forums/diary/LostFiles+Ransomware/25382/ tcpdump vulnerabilities https://www.tcpdump.org/tcpdump-changes.txt TLS Manipulating Malware https://securelist.com/compfun-successor-reductor/93633/ Luasz Cyra: Pass the Hash in Windows 10 https://www.sans.org/reading-room/whitepapers/testing/paper/39170
-
ISC StormCast for Thursday, October 3rd 2019
03/10/2019 Duración: 05minLatest Emotet News https://isc.sans.edu/forums/diary/A+recent+example+of+Emotet+malspam/25378/ SANS Ouch! Newsletter https://www.sans.org/security-awareness-training/resources/four-simple-steps-staying-secure XPdf and Foxit Updates https://www.foxitsoftware.com/support/security-bulletins.php https://forum.xpdfreader.com/viewtopic.php?f=3&t=41885 eFax Malspam https://www.heise.de/security/meldung/Achtung-Angebliches-eFax-birgt-Trojaner-4544386.html Office 365 Idle Timeout https://docs.microsoft.com/en-us/sharepoint/sign-out-inactive-users https://www.microsoft.com/en-us/microsoft-365/roadmap?filters=&searchterms=55183
-
ISC StormCast for Wednesday, October 2nd 2019
02/10/2019 Duración: 06minPDF Encryption Flaw https://web-in-security.blogspot.com/2019/09/pdfex-major-security-flaws-in-pdf.html Windows 7 Security Updates Beyond 2020 https://www.microsoft.com/en-us/microsoft-365/blog/2019/10/01/windows-small-midsize-businesses-stay-secure-current/ ODT Documents Used to Distribute Malware https://blog.talosintelligence.com/2019/09/odt-malware-twist.html
-
ISC StormCast for Tuesday, October 1st 2019
01/10/2019 Duración: 04minMaldoc, PowerShell and BITS https://isc.sans.edu/forums/diary/Maldoc+PowerShell+BITS/25372/ Yet Another Critical Exim Flaw https://nvd.nist.gov/vuln/detail/CVE-2019-16928 CISCO Introduces Semianual Patch Day https://tools.cisco.com/security/center/viewErp.x?alertId=ERP-72547 Windows 2019 to make it easier to disable legacy TLS Versions https://www.microsoft.com/security/blog/2019/09/30/tls-version-enforcement-capabilities-now-available-certificate-binding-windows-server-2019
-
ISC StormCast for Monday, September 30th 2019
30/09/2019 Duración: 05minPolycom Scans https://isc.sans.edu/forums/diary/New+Scans+for+Polycom+Autoconfiguration+Files/25366/ Apple Security Details https://support.apple.com/en-us/HT201222 iOS Jailbreak https://github.com/axi0mX/ipwndfu
-
ISC StormCast for Friday, September 27th 2019
27/09/2019 Duración: 05minvBulletin Botnet https://twitter.com/bad_packets/status/1177256656322695168 Cisco Industrial Router Security Bulletin https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20190925-ios-gos-auth Sniffle Bluetooth Sniffer https://github.com/nccgroup/sniffle Outlook on the web blocking more extensions https://techcommunity.microsoft.com/t5/Exchange-Team-Blog/Changes-to-File-Types-Blocked-in-Outlook-on-the-web/ba-p/874451
-
ISC StormCast for Thursday, September 26th 2019
26/09/2019 Duración: 04minMalspam Pushing Quasar RAT https://isc.sans.edu/forums/diary/Malspam+pushing+Quasar+RAT/25354/ vBulletin 0-Day Exploit Update https://www.bleepingcomputer.com/news/security/vbulletin-zero-day-exploited-for-years-gets-unofficial-patch/ Fake Veteran Employment Site https://blog.talosintelligence.com/2019/09/tortoiseshell-fake-veterans.html
-
ISC StormCast for Wednesday, September 25th 2019
25/09/2019 Duración: 05minRemotewebaccess.com Domain in Certificate Transparency Logs https://isc.sans.edu/forums/diary/Huge+Amount+of+remotewebaccesscom+Sites+Found+in+Certificate+Transparency+Logs/25352/ Adobe Releases Emergency ColdFusion Patch https://blogs.adobe.com/psirt/?p=1789 Apple Releases Additional Updates for iOS/iPadOS https://support.apple.com/en-us/HT201222 vBulletin Vulnerability 0-Day Exploit Released https://seclists.org/fulldisclosure/2019/Sep/31
-
ISC StormCast for Tuesday, September 24th 2019
24/09/2019 Duración: 05minMicrosoft Releases Special Patch for Exploited Vulnerability in Internet Explorer https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1367 Cloudflare Adding "Bot Fight" option https://blog.cloudflare.com/cleaning-up-bad-bots/ iOS Bluetooth Access Feature https://www.theverge.com/2019/9/19/20867286/ios-13-bluetooth-permission-privacy-feature-apps Forcepoint VPN Update https://support.forcepoint.com/KBArticle?id=000017525
-
ISC StormCast for Monday, September 23rd 2019
23/09/2019 Duración: 05minPopular Android Selfie Apps Act as Adware https://www.wandera.com/mobile-security/google-play-adware/ Wireshark Update https://www.wireshark.org/docs/relnotes/wireshark-3.0.5.html Harbor Privilege Escalation https://unit42.paloaltonetworks.com/critical-vulnerability-in-harbor-enables-privilege-escalation-from-zero-to-admin-cve-2019-16097/
-
ISC StormCast for Friday, September 20th 2019
20/09/2019 Duración: 05minAgent Tesla https://isc.sans.edu/forums/diary/Agent+Tesla+Trojan+Abusing+Corporate+Email+Accounts/25336/ Apple Updates https://support.apple.com/en-us/HT201222 https://developer.apple.com/documentation/safari_release_notes/safari_13_release_notes SAMBA 4.11 Released https://www.samba.org/samba/history/samba-4.11.0.html GitHub Security Updates https://github.blog/2019-09-18-securing-software-together/
-
ISC StormCast for Thursday, September 19th 2019
19/09/2019 Duración: 06minAnalyzing a Current Emotet Sample https://isc.sans.edu/forums/diary/Emotet+malspam+is+back/25330/ Windows Defender "Scan Now" Failed Bug Fix https://www.bleepingcomputer.com/news/microsoft/windows-defender-antivirus-scans-broken-after-new-update/ https://borncity.com/win/2019/09/18/defender-antimalware-version-4-18-1908-7-released/ QEMU Vulnerablity https://www.openwall.com/lists/oss-security/2019/09/17/1 VMWare Vulnerabilty https://blogs.vmware.com/security/2019/09/amd-display-driver-security-updates-address-cve-2019-5685.html New CWE Top 25 Released https://cwe.mitre.org/top25/archive/2019/2019_cwe_top25.html
-
ISC StormCast for Wednesday, September 18th 2019
18/09/2019 Duración: 05minInvestigating Gaps in Windows Event Logs https://isc.sans.edu/forums/diary/Investigating+Gaps+in+your+Windows+Event+Logs/25328/ SOHOpelesly Broken 2 https://www.securityevaluators.com/whitepaper/sohopelessly-broken-2/ HP Printer Privacy https://robertheaton.com/2019/09/15/hp-printers-send-data-on-what-you-print-back-to-hp/
-
ISC StormCast for Tuesday, September 17th 2019
17/09/2019 Duración: 06minEncrypted Sextortion https://isc.sans.edu/forums/diary/Encrypted+Sextortion+PDFs/25324/ SimJacker https://www.adaptivemobile.com/blog/simjacker-next-generation-spying-over-mobile LastPass Password Leak https://bugs.chromium.org/p/project-zero/issues/detail?id=1930 Microsoft Extends EoL For Exchange Server 2010 https://techcommunity.microsoft.com/t5/Exchange-Team-Blog/Microsoft-Extending-End-of-Support-for-Exchange-Server-2010-to/ba-p/753591
-
ISC StormCast for Monday, September 16th 2019
16/09/2019 Duración: 06minRig Exploit Kit Delivering VBScript https://isc.sans.edu/forums/diary/Rig+Exploit+Kit+Delivering+VBScript/25318/ Pentesters Arrested During Physical Access Pentest https://arstechnica.com/information-technology/2019/09/check-the-scope-pen-testers-nabbed-jailed-in-iowa-courthouse-break-in-attempt/ iOS Lock Screen Unlock Vulnerability https://www.theregister.co.uk/2019/09/12/apples_ios_lock_workaround/
-
ISC StormCast for Wednesday, September 11th 2019
11/09/2019 Duración: 05minMicrosoft Patch Tuesday https://isc.sans.edu/forums/diary/Microsoft+September+2019+Patch+Tuesday/25310/ Adobe Patches https://helpx.adobe.com/security.html Intel SSH Side Channel Vulnerability https://www.vusec.net/projects/netcat/ https://www.cs.vu.nl/~herbertb/download/papers/netcat_sp20.pdf
-
ISC StormCast for Tuesday, September 10th 2019
10/09/2019 Duración: 06minFirefox to Enable DNS over HTTPs by Default in September https://blog.mozilla.org/futurereleases/2019/09/06/whats-next-in-making-dns-over-https-the-default/ Telegram Fixes Privacy Bug https://www.inputzero.io/2019/09/telegram-privacy-fails-again.html PsiXBot Uses DoH https://www.proofpoint.com/us/threat-insight/post/psixbot-now-using-google-dns-over-https-and-possible-new-sexploitation-module
-
ISC StormCast for Monday, September 9th 2019
09/09/2019 Duración: 04minUnidentified Scanning Activity Likely Associated with Mirai/Successors https://isc.sans.edu/forums/diary/Unidentified+Scanning+Activity/25304/ Bluekeep Exploit Now in Metasploit https://blog.rapid7.com/2019/09/06/initial-metasploit-exploit-module-for-bluekeep-cve-2019-0708/ How to Remove GMail Calendar Spam https://support.google.com/calendar/answer/6084018?co=GENIE.Platform%3DDesktop&hl=en Exim SNI TLS Vulnerability https://exim.org/static/doc/security/CVE-2019-15846.txt
-
ISC StormCast for Wednesday, September 4th 2019
04/09/2019 Duración: 05minTricky Link Retrieves Trick Bot https://isc.sans.edu/forums/diary/Guest+Diary+Tricky+LNK+points+to+TrickBot/25290/ Supermicro Virtual USB Vulnerability https://eclypsium.com/2019/09/03/usbanywhere-bmc-vulnerability-opens-servers-to-remote-attack/ Facebook Free Basics Key Used to Sign Unrelated Android Apps https://www.androidpolice.com/2019/08/29/cryptographic-key-used-to-sign-one-of-facebooks-android-apps-compromised/