SANS Stormcast Friday, May 22nd, 2026: Selective HTTP Proxying; More GitHub Repo Trouble; MSFT Defender Patches;
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 22 May 2026
⏱️ 7 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello and welcome to the Friday, May 22nd, |
| 0:07.5 | 2006 edition of the Sands Internet Storm Center's Stormcast. |
| 0:12.8 | My name is Johannes Ulrich, recording today from Jacksonville, Florida. |
| 0:17.8 | And this episode is brought you by the Sands.edu graduate certificate program in cyber security engineering. |
| 0:25.2 | Last week, Rob wrote a diary about a tool called proxy fire. Proxifier is neat because it allows you to intercept traffic with a proxy from specific applications. |
| 0:35.7 | Of course, that's great for reverse analysis and such. Yes, you could |
| 0:39.7 | just proxy all traffic, but then, of course, you have to deal with all the noise that you're |
| 0:44.7 | getting in addition to the traffic from the application you're interested in. The trick here is |
| 0:52.0 | that proxy fire only works on Macs and on Windows. |
| 0:57.4 | Yes, there is sort of an Android version, but no sort of generic Linux versions. |
| 1:01.6 | I looked into, well, how do you do it in Linux? |
| 1:05.0 | And as far as I know, there are really sort of three different ways of doing it. |
| 1:09.8 | Number one, you can set specific environment variable, |
| 1:12.8 | HTTP underscore proxy and HDPS underscore proxy. Many sort of HTTP libraries are looking for |
| 1:20.0 | these environment variables and will use any proxy. So before starting the application, you |
| 1:25.8 | just set these environment variables. |
| 1:28.8 | You can do it a little bit with IP tables, but with IP tables, |
| 1:32.8 | you're kind of only able to redirect traffic from a particular user. |
| 1:37.9 | So you have to make sure that this application, well, |
| 1:40.5 | is the only application being run by a particular user. |
| 1:43.6 | And then I think sort of the neatest and often overlooked feature is, Well, it's the only application being run by a particular user. |
| 1:50.8 | And then I think sort of the needest and often overlooked feature in Linux is network namespaces, |
... |
Transcript will be available on the free plan in 13 days. Upgrade to see the full transcript now.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

