meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS Stormcast Monday, January 26th, 2026: FortiOS SSO Vuln Updates; Outlook OOB Update; VMware vCenter Exploited

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News

4.9754 Ratings

🗓️ 26 January 2026

⏱️ 4 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. SANS Stormcast Monday, January 26th, 2026: FortiOS SSO Vuln Updates; Outlook OOB Update; VMware vCenter Exploited

Transcript

Click on a timestamp to play from that location

0:00.0

Hello and welcome to the Monday, January 26, 2006 edition of the Sands Internet Storm Center's Stormcast.

0:11.8

My name is Johannes Ulrich, recording today from Jacksonville, Florida.

0:16.9

And this episode is brought you by the Sands.edu graduate certificate program in cyber defense operations.

0:25.2

I just want to start out with a quick update on the 40 OS SAML bypass issue.

0:31.9

We now have an official statement from 40Net regarding this problem.

0:36.8

And they basically say, say well kind of what you

0:38.2

already knew that it was Samel and single sign on related so the mitigation still stands

0:45.4

you should disable single sign on and there is no patch available yet and 40 net didn't say

0:53.7

about a schedule or anything like this just just that they're working on it.

0:57.3

One interesting sort of little titbit from the 40 Net advisory is that this does not just affect the 40 cloud implementation of single sign-on,

1:08.3

but essentially more or less any system that you're using that uses SAML to authenticate to 40 OS could potentially be bypassed.

1:17.7

So it's basically how 40OS implement SAML and how it verifies whether or not these SAML messages are correctly signed.

1:25.6

This, of course, is an ongoing issue.

1:33.0

Not just 4DNet has been struggling with implementing Samel correctly.

1:35.0

There have been multiple issues.

1:37.4

We have talked about this here in the podcast before,

1:45.5

where it was possible to bypass Samel authentication by manipulating these digitally signed messages.

1:54.4

And we got a second out-of-band update from Microsoft that was triggered by January's security updates. This time it's Outlook that's being patched. Again, these updates are not security

2:00.3

updates so much,

2:01.3

but they're fixing problems that were introduced by the security update.

2:06.1

Here, apparently, if you're using Outlook and you're storing PST files on OneDrive,

2:11.9

you may have Outlook hanging and you can't exit it.

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.