Talk With an Expert

Internet Storm Center Tech Corner

Credential Guard and Kerberos delegation

https://isc.sans.edu/diary/Credential+Guard+and+Kerberos+delegation/31488

AWS DShield Sensor + DShield SIEM

https://isc.sans.edu/diary/SANS+ISC+Internship+Setup+AWS+DShield+Sensor+DShield+SIEM+Guest+Diary/31480

From a Regular Infostealer to its Obfuscated Version

https://isc.sans.edu/diary/From+a+Regular+Infostealer+to+its+Obfuscated+Version/31484

Using Zeek, Snort, and Grafana to Detect Crypto Mining Malware

https://isc.sans.edu/diary/Guest+Diary+Using+Zeek+Snort+and+Grafana+to+Detect+Crypto+Mining+Malware/31472

The Day We Unveiled the Secret Rotation Illusion

https://www.clutch.security/blog/the-day-we-unveiled-the-secret-rotation-illusion

Corrupt Word Documents used in Phishing

https://x.com/anyrun_app/status/1861024182210900357

IBM Security Verify Access Appliance Vulnerabilities

https://www.ibm.com/support/pages/security-bulletin-multiple-security-vulnerabilities-were-found-ibm-security-verify-access-appliance-cve-2024-49803-cve-2024-49804-cve-2024-49805-cve-2024-49806

Credit Card Skimmer Malware Targeting Magento Checkout Pages

https://blog.sucuri.net/2024/11/credit-card-skimmer-malware-targeting-magento-checkout-pages.html

LogoFAIL Exploited to Deploy Bootkitty, the first UEFI bootkit for Linux

https://www.binarly.io/blog/logofail-exploited-to-deploy-bootkitty-the-first-uefi-bootkit-for-linux

The Nearest Neighbor Attack: How A Russian APT Weaponized Nearby Wi-Fi Networks for Covert Access

https://www.volexity.com/blog/2024/11/22/the-nearest-neighbor-attack-how-a-russian-apt-weaponized-nearby-wi-fi-networks-for-covert-access/

Introducing NachoVPN: One VPN Server to Pwn Them All

https://blog.amberwolf.com/blog/2024/november/introducing-nachovpn---one-vpn-server-to-pwn-them-all/

Keycloak Patches

https://github.com/keycloak/keycloak/security/advisories/GHSA-93ww-43rr-79v3

Palo Alto Networks Global Protect App

https://security.paloaltonetworks.com/CVE-2024-5921

PHP Updates

https://github.com/php/php-src/security/advisories/GHSA-g665-fm4p-vhff

Stickers: https://isc.sans.edu/stickers.html (code PODCAST)

View Older Issues

Catch up on recent editions of NewsBites or browse our full archive of expert-curated cybersecurity news.

Browse Archive
T-Mobile Wards Off APT Intrusion; International Advisory Body for Submarine Cable Resilience; Costa Rican Fuel Provider Recovering from Ransomware