Talk With an Expert

Internet Storm Center Tech Corner

5G Vulnerabilities

https://isc.sans.edu/diary/5Ghoul+Impacts+Implications+and+Next+Steps/30462

Revealing the hidden Risks of QR Codes

https://isc.sans.edu/diary/Revealing+the+Hidden+Risks+of+QR+Codes+Guest+Diary/30458

Whose packet is it anyway: a new RFC for attribution of internet probes

https://isc.sans.edu/diary/Whose+packet+is+it+anyway+a+new+RFC+for+attribution+of+internet+probes/30456

Cobalt Strike's "Runtime Configuration"

https://isc.sans.edu/diary/Cobalt+Strikes+Runtime+Configuration/30426

Holiday Hack Challenge

https://www.sans.org/mlp/holiday-hack-challenge-2023/

Windows 10 End of Support

https://techcommunity.microsoft.com/t5/windows-it-pro-blog/plan-for-windows-10-eos-with-windows-11-windows-365-and-esu/ba-p/4000414

Apache Struts 2 Vulnerability CVE-2023-50164

https://cwiki.apache.org/confluence/display/WW/S2-066

MLFlow Vulnerability

https://www.contrastsecurity.com/security-influencers/discovering-mlflow-framework-zero-day-vulnerability-machine-language-model-security-contrast-security

https://mlflow.org/category/news/index.html

Abusing STS Tokens

https://redcanary.com/blog/aws-sts/

Atlassian Vulnerabilities

https://confluence.atlassian.com/security/security-advisories-bulletins-1236937381.html

Adobe ColdFusion Exploit Abused

https://www.cisa.gov/news-events/cybersecurity-advisories/aa23-339a

Atos Unify OpenScape Vulnerability

https://sec-consult.com/vulnerability-lab/advisory/argument-injection-vulnerability-in-multiple-atos-unify-openscape-products/

ExtremeXOS Vulnerabilities

https://rhinosecuritylabs.com/research/extreme-networks-extremexos-vulnerabilities/

View Older Issues

Catch up on recent editions of NewsBites or browse our full archive of expert-curated cybersecurity news.

Browse Archive