SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
Johannes B. Ullrich

Neueste Episode
2521 Episoden
SANS Stormcast Friday, September 18th, 2026: LousivLaoder Analysis; Issabel Framework 0-Day; Cyber Decoys; CISA Vuln Bulletin; Unbound Vulnerability
18.09.2026 | 7 Min.LausivLoader analysis, or how to pass data between malware stages
https://isc.sans.edu/diary/LausivLoader%20analysis%2C%20or%20how%20to%20pass%20data%20between%20malware%20stages/33348
Issabel Framework Hard-coded JWT Key RCE CVE-2026-89026
https://www.vulncheck.com/advisories/issabel-pbx-hard-coded-jwt-key-rce-via-pbxapi-manager-originate
Using Cyber Decoys to Strengthen Detection and Response
https://www.cisa.gov/sites/default/files/2026-09/using-cyber-decoys-to-strengthen-detection-and-response_508c.pdf
CISA to Sunset Weekly Vulnerability Bulletin on September 28, 2026
https://content.govdelivery.com/accounts/USDHSCISA/bulletins/42b055b
Unbound Vulnerability
https://nlnetlabs.nl/projects/unbound/security-advisories/
My Upcoming Classes
https://www.sans.org/profiles/dr-johannes-ullrichSANS Stormcast Thursday, September 17th, 2026: Hospitality Scans; Cisco, Acronis, and Pixel 0-Day; Dynamic Incident Response
17.09.2026 | 6 Min.Scans Targeting Hospitality Applications
https://isc.sans.edu/diary/Scans%20Targeting%20Hospitality%20Applications/33344
Cisco Identity Services Engine Authentication Bypass Vulnerability CVE-2026-76460
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ISE-ABP-VNSW7Tn5
Acronis Local privilege escalation due to insecure file permissions CVE-2026-87886
https://security-advisory.acronis.com/advisories/SEC-10986
Pixel Update Bulletin September 2026
https://source.android.com/docs/security/bulletin/pixel/2026/2026-09-01
Dynamic Incident Response (Free E-Book)
https://dynamicincidentresponse.com
My Upcoming Classes
https://www.sans.org/profiles/dr-johannes-ullrichSANS Stormcast Wednesday, September 16th, 2026: MacOS 27 Traffic; Cisco 0-Day; Protecting Active Directory and API Tokens
16.09.2026 | 7 Min.MacOS 27 - First Boot
https://isc.sans.edu/diary/MacOS%2027%20-%20First%20Boot/33340
Cisco Secure Email Gateway SQL Injection Vulnerability CVE-2026-76461
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-esa-inj-2bLVGmhX
Detecting and Mitigating Active Directory Compromises
https://www.cisa.gov/resources-tools/resources/detecting-and-mitigating-active-directory-compromises
Protecting Tokens and Assertions from Forgery, Theft, and Misuse
https://nvlpubs.nist.gov/nistpubs/ir/2026/NIST.IR.8587.pdf
My Upcoming Classes
https://www.sans.org/profiles/dr-johannes-ullrichSANS Stormcast Tuesday, September 15th, 2026: Apple Updates; Homebrew Update; MSFT OOB Patch; Telegram Vuln
15.09.2026 | 7 Min.Apple Updates Everything
https://isc.sans.edu/diary/Apple%20Updates%20Everything/33336
Homebrew 7 Released
https://brew.sh/2026/09/13/homebrew-7.0.0/
Microsoft Out-of-Band Patch
https://support.microsoft.com/en-us/servicing/os/windows-11/2026/09/kb5129195-windows-11-24h2-25h2-security-update
Telegram XSS Vulnerability
https://expatch.com/writeups/telegram-html-export-xss.html
My Upcoming Classes
https://www.sans.org/profiles/dr-johannes-ullrichSANS Stormcast Monday, September 14th, 2026: Self-Expanding Stolen LLM Gateways; PAN-OS Vuln; OpenAI Hacked Ruby; Passkey Themed Social Engineering
14.09.2026 | 6 Min.The Self-Expanding Stolen Inference Supply Chain: An AI Agent Harvesting and Re-Serving LLM Access
https://isc.sans.edu/diary/The%20Self-Expanding%20Stolen%20Inference%20Supply%20Chain%3A%20An%20AI%20Agent%20Harvesting%20and%20Re-Serving%20LLM%20Access/33332
CVE-2026-0310 PAN-OS: Buffer Overflow Vulnerability via XML Processing
https://security.paloaltonetworks.com/CVE-2026-0310
OpenAI agents carried out an undisclosed cyber-attack on RubyGems
https://www.rubyhack.ai
Passkey-themed social engineering leads to identity and cloud compromise
https://www.microsoft.com/en-us/security/blog/2026/09/09/passkey-themed-social-engineering-leads-identity-cloud-compromise/
My Upcoming Classes
https://www.sans.org/profiles/dr-johannes-ullrich
Weitere Nachrichten Podcasts
Trending Nachrichten Podcasts
Über SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
A brief daily summary of what is important in information security. The podcast is published every weekday and designed to get you ready for the day with a brief, usually 5 minute long, summary of current network security related events. The content is late breaking, educational and based on listener input as well as on input received by the SANS Internet Stormcenter. You may submit questions and comments via our contact form at https://isc.sans.edu/contact.html .
Podcast-WebsiteHöre SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast), STREITWERT und viele andere Podcasts aus aller Welt mit der radio.at-App

Hol dir die kostenlose radio.at App
- Sender und Podcasts favorisieren
- Streamen via Wifi oder Bluetooth
- Unterstützt Carplay & Android Auto
- viele weitere App Funktionen
Hol dir die kostenlose radio.at App
- Sender und Podcasts favorisieren
- Streamen via Wifi oder Bluetooth
- Unterstützt Carplay & Android Auto
- viele weitere App Funktionen


SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
Code scannen,
App laden,
loshören.
App laden,
loshören.


























