meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS Stormcast Monday, April 6th, 2026: TeamPCP Update and Axio Post Mortem; Fortinet 0-Day

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

News, Tech News

4.9754 Ratings

🗓️ 6 April 2026

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. SANS Stormcast Monday, April 6th, 2026: TeamPCP Update and Axio Post Mortem; Fortinet 0-Day

Transcript

Click on a timestamp to play from that location

0:00.0

Hello and welcome to the Monday, April 6, 2026 edition of the Sands

0:09.9

Atlantic Storm Center's Stormcast. My name is Johannes Ulrich, recording today from Jacksonville, Florida.

0:17.3

And this episode is brought you by the Sands.edu, creative certificate program in incident response.

0:24.1

Well, let's start today with a quick update on some of the team PCP and Axi's events from the last two weeks.

0:34.1

First of all, Team PCP can sort of publish another update and summary of what was new.

0:40.3

A couple more systems and organizations that announced they were breached. However, it looks like for almost two weeks now or so we don't really have any new compromise that is attributed to Team PCP.

0:54.9

These are systems that were compromised in the initial wave

0:59.8

and, well, just now become known as compromised.

1:03.4

There are also a number of links to write-ups and such with additional details

1:08.1

about the embalmer and basically what exactly happened here,

1:13.1

what was exfiltrated. A couple websites have assembled some lists of compromised organizations,

1:20.3

but one word of caution here that they're probably rather incomplete and there are a lot more compromised organizations.

1:30.5

Now, one organization apparently was not compromised by Team PCP was Axis, and we now have

1:40.0

a post-mortem here by access with additional details.

1:45.7

I originally thought it was related to Team PCP,

1:48.8

because it sort of made sense the type of compromise and, of course, the timing,

1:53.3

but apparently this was completely independent from Team PCP

1:57.7

and the trivia exploit and all of that.

2:00.4

Well, we now know it was actually pretty much social engineering and team PCP and the trivia exploit and all of that.

2:04.5

Well, we now know it was actually pretty much social engineering and some of the better social engineering.

2:07.9

The lead developer here off-axis,

2:11.1

who is responsible for the particular NPM pact,

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.