4.9 • 696 Ratings
🗓️ 10 November 2025
⏱️ 7 minutes
🧾️ Download transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello and welcome to the Monday, November 10th, 2025 edition of the Sands Inlet Storm Center's |
| 0:10.9 | Stormcast. My name is Johannes Ulrich, recording today from Jacksonville, Florida. |
| 0:17.0 | And this episode is brought you by the Sands.edu credit certificate program in cybersecurity engineering. |
| 0:24.0 | Quick a reminder from DDA today that our honeypots continuously are seeing a lot of attempts to download source code repostories from your web service. |
| 0:35.9 | This often happens sort of accidentally where these dot-git |
| 0:39.9 | and directories like this are being made life as part of pushing a website life. So definitely |
| 0:47.7 | be super careful about this. The attackers are constantly scanning for this. And when I'm talking |
| 0:53.4 | about, you know, |
| 0:54.5 | for example, not embedding credentials and such in GitHub repositories, that question always comes |
| 1:00.8 | up where, well, you know, what if I keep my GitHub repository private? Well, yeah, it's private, |
| 1:07.8 | but for how long and all it takes is a small configuration mistake like this |
| 1:13.4 | in order to leak not just your source code, but also possible secrets that you're keeping with your source code. |
| 1:21.4 | So be super careful here and also proactively scan your web publications for any leak directories like this. |
| 1:29.5 | You can expect that it takes probably way less than a day for an attacker to find these files. |
| 1:37.1 | And Socket has discovered an interesting set of new malicious. |
| 1:42.8 | Dotnet packages distributed via Nuget. |
| 1:46.4 | There are a couple of things that are really different and novel compared to some of the |
| 1:50.5 | other malicious packages that we have talked about in the past. |
| 1:53.8 | I think it was just last week or so that I mentioned that pretty much all of the attacks |
| 1:58.3 | that we have seen so far were we're really heavily targeting crypto coin |
| 2:03.5 | developers. Well, this one is different. It's going specifically after developers that are working |
| 2:11.2 | with industrial control systems, in particular targeting, for example, a library related to Siemens PLCs. |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2025.