Posts by SANS.edu Internet Storm Center
image of sans internet stormcenter logo with stormcast flair
SANS Stormcast Tuesday, April 21st, 2026: CVE and EPSS; Windows Server 2025 OOB; QEMU Abuse;
https://isc.sans.edu/podcastdetail/9900
image of sans internet stormcenter logo with stormcast flair
SANS Stormcast Monday, April 20th, 2026: Lumma Stealer and Sectop RAT; Windows 0-Day Exploited; NIST NVD Update; FortiSandbox PoC
https://isc.sans.edu/podcastdetail/9898
image of sans internet stormcenter logo with stormcast flair
SANS Stormcast Friday, April 17th, 2026: DVRs Again; Cisco Again; Windows Defender Again; Sonatype
https://isc.sans.edu/podcastdetail/9896
ISC Logo
ISC Diary: #LummaStealer infection with #SectopRAT (#ArechClient2) https://isc.sans.edu/diary/32904
image of sans internet stormcenter logo with stormcast flair
SANS Stormcast Thursday, April 16th, 2026: AI Credential Scans; Microsoft Update Issues; RDP Warnings; GitHub Action Vulns;
https://isc.sans.edu/podcastdetail/9894
image of sans internet stormcenter logo with stormcast flair
SANS Stormcast Wednesday, April 15th, 2026: Microsoft, Adobe, Fortinet and others Patches
https://isc.sans.edu/podcastdetail/9892
Microsoft Patch Tuesday April 2026. https://isc.sans.edu/diary/32898
image of sans internet stormcenter logo with stormcast flair
SANS Stormcast Tuesday, April 14th, 2026: EncystPHP Webshell; CPUID Compromise; OpenAI Mac Cert Issue; Axios Vulnerability
https://isc.sans.edu/podcastdetail/9890
Scans for EncystPHP Webshell https://isc.sans.edu/diary/32892
image of sans internet stormcenter logo with stormcast flair
SANS Stormcast Monday, April 13th, 2026: Obfuscated JavaScript; Numbers in Passwords; Adobe Patches 0-Day; ClickFix Fix Bypass
https://isc.sans.edu/podcastdetail/9888
image of sans internet stormcenter logo with stormcast flair
SANS Stormcast Thursday, April 9th, 2026: Honeypot Fingerprinting; Microsoft Locks Developer Accounts; ActiveMQ Vuln;
https://isc.sans.edu/podcastdetail/9886
TeamPCP Supply Chain Campaign: Update 007 - Cisco Source Code Stolen via Trivy-Linked Breach, Google https://isc.sans.edu/diary/32880
More Honeypot Fingerprinting Scans https://isc.sans.edu/diary/32878
image of sans internet stormcenter logo with stormcast flair
SANS Stormcast Wednesday, April 8th, 2026: Pivoting for Webshells; WatchGuard Firebox Patch; Project Glasswing; Kubernetes Misconfigurations
https://isc.sans.edu/podcastdetail/9884
A Little Bit Pivoting: What Web Shells are Attackers Looking for? https://isc.sans.edu/diary/32874
image of sans internet stormcenter logo with stormcast flair
SANS Stormcast Tuesday, April 7th, 2026: Redirects in Phishing; Internet Bug Bounty Suspended; Bluehammer; Keycloak MFA Bypass
https://isc.sans.edu/podcastdetail/9882
image of sans internet stormcenter logo with stormcast flair
SANS Stormcast Monday, April 6th, 2026: TeamPCP Update and Axio Post Mortem; Fortinet 0-Day
https://isc.sans.edu/podcastdetail/9880
TeamPCP Supply Chain Campaign: Update 006 - CERT-EU Confirms European Commission Cloud Breach, Sport https://isc.sans.edu/diary/32864
image of sans internet stormcenter logo with stormcast flair
SANS Stormcast Friday, April 3rd, 2026: Vite Exploits; OpenSSH 10.3; Claude Code Vuln
https://isc.sans.edu/podcastdetail/9878
Attempts to Exploit Exposed "Vite" Installs (CVE-2025-30208) https://isc.sans.edu/diary/32860