meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS Stormcast Friday, July 24th, 2026: OpenAI vs. Huggingface; Zimbra Exploited; Notepad++ Abuse; Browser as C2

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News

4.9755 Ratings

🗓️ 24 July 2026

⏱️ 7 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. SANS Stormcast Friday, July 24th, 2026: OpenAI vs. Huggingface; Zimbra Exploited; Notepad++ Abuse; Browser as C2

Transcript

Click on a timestamp to play from that location

0:00.0

Hello and welcome to the Friday, July 24th, 26 edition of the Sands Internet Storm Center's Stormcast.

0:12.5

My name is Johannes Ulrich, recording today from Jacksonville, Florida.

0:18.0

This episode is brought you by the Sands.edu master's degree program in information

0:23.2

security engineering. The opening eye versus hugging phase incident does still dominate the news.

0:31.0

And Renato today wrote up as his diary for the day, a summary of it, with some lessons learned.

0:39.1

I think are quite valuable here.

0:42.2

So first of all, that if you have some kind of sandbox or so for your agent,

0:48.6

it's typically not providing the security isolation that you expect.

0:54.1

It's for many agents, really just more of a

0:57.9

guideline. Secondly, well, there's not this assimity problem around guardrails that Hucking Face ran into

1:05.5

where their models actually refuse to analyze some of the evidence or respond because of guardrails they ran

1:14.0

into. So that's an interesting, I think, lesson to take away from this. And then of course,

1:18.6

well, how did it actually get in? What were the vulnerabilities? And here, non-human identities,

1:23.9

API keys and stuff like this still sort of played a major role here.

1:28.7

So that's something that, of course, a lot of human-initiated exploits and intrusions are

1:35.0

leveraging as well. So definitely something that you probably want to restrict and control.

1:42.1

A couple times in the past, I've cross-sides-scripting vulnerabilities in

1:46.0

CIMRA. So just fitting that SISA in conjunction with other cybersecurity agencies

1:52.6

has published an advisory how a Russian state-sponsored actor is using cross-sad-scripting

2:00.2

vulnerabilities to attack CIMPRA users.

2:03.8

So CIMPRA, like all webmail systems, is struggling with cross-sides scripting.

2:08.8

You have to essentially display HTML email with cascading style sheets inside the user's browser,

...

Transcript will be available on the free plan in 24 days. Upgrade to see the full transcript now.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.