Security Advisories

ISC StormCast for Friday, October 8th, 2021

ISC StormCast for Friday, October 8th, 2021

Who is Hunting For Your IPTV Set-Top Box? https://isc.sans.edu/forums/diary/Who+Is+Hunting+For+Your+IPTV+SetTop+Box/27912/ Another Update For Apache https://httpd.apache.org Font on Lake Rootkit https...

ISC StormCast for Thursday, October 7th, 2021

ISC StormCast for Thursday, October 7th, 2021

Apache 2.4.49 Directory Traversal Vulnerability https://isc.sans.edu/forums/diary/Apache+2449+Directory+Traversal+Vulnerability+CVE202141773/27908/ Python Ransomware Targeting ESXi Server https://www....

ISC StormCast for Wednesday, October 6th, 2021

ISC StormCast for Wednesday, October 6th, 2021

Looking Glass Sites https://isc.sans.edu/forums/diary/Looking+Glasses+Debugging+Network+Connectivity+Issues/27904/ Facebook Postmortem https://engineering.fb.com/2021/10/05/networking-traffic/outage-d...

ISC StormCast for Tuesday, October 5th, 2021

ISC StormCast for Tuesday, October 5th, 2021

Facebook Outage https://isc.sans.edu/forums/diary/Facebook+Outage+Yes+its+DNS+sort+of+A+super+quick+analysis+of+what+is+going+on/27900/ Boutique “Dark” Botnet Hunting for Crumbs https://is...

ISC StormCast for Monday, October 4th, 2021

ISC StormCast for Monday, October 4th, 2021

A New Tool To Add to Your LOLBAS List: cvtres.exe https://isc.sans.edu/forums/diary/New+Tool+to+Add+to+Your+LOLBAS+List+cvtresexe/27892/ Google Chrome Continuing Updates https://support.google.com/chr...

ISC StormCast for Friday, October 1st, 2021

ISC StormCast for Friday, October 1st, 2021

Visa/Apple Express Transit Relay Attack https://www.bbc.com/news/technology-58719891 FluBot Offering Fake FlutBot Protection https://twitter.com/CERTNZ/status/1443701853665980440 Undetected Azure Acti...

ISC StormCast for Thursday, September 30th, 2021

ISC StormCast for Thursday, September 30th, 2021

Keeping Track of Time: Network Time Protocol and GPSD Bug https://isc.sans.edu/forums/diary/Keeping+Track+of+Time+Network+Time+Protocol+and+a+GPSD+Bug/27886/ Apple Airtags Stored XSS https://medium.co...

ISC StormCast for Wednesday, September 29th, 2021

ISC StormCast for Wednesday, September 29th, 2021

TLS 1.3 and SSL: The Current State of Affairs https://isc.sans.edu/forums/diary/TLS+13+and+SSL+the+current+state+of+affairs/27882/ EFF Discontinues HTTPS Everywhere Plugin https://www.eff.org/deeplink...

ISC StormCast for Tuesday, September 28th, 2021

ISC StormCast for Tuesday, September 28th, 2021

Trend Micro ServerProtect Authentication Bypass Vulnerability https://www.zerodayinitiative.com/advisories/ZDI-21-1115/ Let’s Encrypt Root CA Expiration https://community.letsencrypt.org/t/produ...