SANS Internet Storm Center Daily Network/Cyber Security and Information Security Podcast   /     ISC StormCast for Wednesday, April 24th, 2024

Description

Struts2 devmode Still a Problem Ten Years Later https://isc.sans.edu/forums/diary/Struts%20%22devmode%22%3A%20Still%20a%20problem%20ten%20years%20later%3F/30866/ Analyzing Forest Blizard's Custom Post-Compromise Tool for exploiting CVE-2022-38028 https://www.microsoft.com/en-us/security/blog/2024/04/22/analyzing-forest-blizzards-custom-post-compromise-tool-for-exploiting-cve-2022-38028-to-obtain-credentials/ April 2024 Exchange Server Hotfix Update https://techcommunity.microsoft.com/t5/exchange-team-blog/released-april-2024-exchange-server-hotfix-updates/ba-p/4120536 CVE-2024-2389: Command Injection Vulnerability in Progress Flowmon https://rhinosecuritylabs.com/research/cve-2024-2389-in-progress-flowmon/ GuptiMiner: Hijacking Antivirus Updates for Distributing Backdoors and Casual Mining https://decoded.avast.io/janrubin/guptiminer-hijacking-antivirus-updates-for-distributing-backdoors-and-casual-mining/

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. struts2 devmode scans; Russian PrinterNightmare; Exchange Server Fix; Flowmon Exploit; GuptiMiner;

Subtitle
struts2 devmode scans; Russian PrinterNightmare; Exchange Server Fix; Flowmon Exploit; GuptiMiner;
Duration
6:22
Publishing date
2024-04-24 02:00
Link
https://isc.sans.edu/podcastdetail/8952
Contributors
  Dr. Johannes B. Ullrich
author  
Enclosures
https://chrt.fm/track/2748D7/https://traffic.libsyn.com/securitypodcast/8952.mp3
audio/mpeg