meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS Stormcast Friday, February 27th, 2026: Finding Singal (@sans_edu intern); Google API Keys and Gemini; AirSnitch Breaking Client Isolation

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

News, Tech News

4.9754 Ratings

🗓️ 27 February 2026

⏱️ 9 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. SANS Stormcast Friday, February 27th, 2026: Finding Singal (@sans_edu intern); Google API Keys and Gemini; AirSnitch Breaking Client Isolation

Transcript

Click on a timestamp to play from that location

0:00.0

Hello and welcome to the Friday, February 27th, 2006 edition of the Sands and its Storm Center's Stormcast.

0:12.8

My name is Johannes Ulrich and today I'm recording from Jacksonville, Florida.

0:17.7

And this episode is brought you by the Sands.edu bachelor's degree program in Applied Cybersecurity.

0:24.9

Well, I'm talking about our bachelor's program. Today we have another guest diary by Austin Bodily.

0:32.0

Austin looked into one of our Inite Storm Center honeypots.

0:36.5

That's part also of the Inlet Storm Center internship that these students participate in.

0:42.4

And, well, he struggled with a very common challenge information security,

0:47.5

and that's too many alerts.

0:49.6

Now, you wouldn't really think so, but even for a simple honeypot connected to a random home IP address,

0:57.7

you still have this problem. And Austin now turned to, well, who else? ChatGPT to AI for help to try to

1:08.7

understand these alerts better and is here documenting some of the

1:12.7

challenges. One of the conclusions here that is something that people often like recognize at this

1:18.7

point is in order to really better understand alerts, you can't just rely on just looking at

1:25.1

inbound data and seeing basically what gets stuck in your firewall or

1:29.0

what inbound requests trigger certain IDS rules or in this case just know of honeypot hits.

1:37.0

But what's going back is sometimes as important, if not more important, to really figure out

1:43.5

what a particular attack is trying to accomplish.

1:47.0

And Joe Leon with Truffle Security has published an interesting blog post about some unintended consequences with Google API keys

1:56.7

once Google started offering Gemini, their AI system.

2:03.7

Joe works with travel security, and travel security, of course, is famous for the software they're

2:09.4

creating that helps you find stray and leaked API keys.

2:14.5

Now, the problem with the original Google API case was that Google didn't consider

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.