SANS Internet Storm Center Daily Network/Cyber Security and Information Security Podcast   /     ISC StormCast for Monday, April 22nd, 2024

Description

The CVE's They are A-Changing https://isc.sans.edu/diary/The%20CVE%27s%20They%20are%20A-Changing!/30850 CrushFTP 0-Day Vulnerability https://www.crushftp.com/crush11wiki/Wiki.jsp?page=Update https://www.reddit.com/r/crowdstrike/comments/1c88788/situational_awareness_20240419_crushftp_virtual/ GitHub Comment Bug Used to Distribute Malware https://www.bleepingcomputer.com/news/security/github-comments-abused-to-push-malware-via-microsoft-repo-urls/ YubiKey Manager Privilege Escalation https://www.yubico.com/support/security-advisories/ysa-2024-01/ Palo Alto Networks GlobalProtect Update https://security.paloaltonetworks.com/CVE-2024-3400

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. CVE Changes; CrushFTP 0-Day; GitHub Comment Bug; YubiKey Manager Bug; PAN GlobalProtect Update

Subtitle
CVE Changes; CrushFTP 0-Day; GitHub Comment Bug; YubiKey Manager Bug; PAN GlobalProtect Update
Duration
5:36
Publishing date
2024-04-22 02:00
Link
https://isc.sans.edu/podcastdetail/8948
Contributors
  Dr. Johannes B. Ullrich
author  
Enclosures
https://chrt.fm/track/2748D7/https://traffic.libsyn.com/securitypodcast/8948.mp3
audio/mpeg