meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS Stormcast Monday, October 27th, 2025: Bilingual Phishing; Kaitai Struct WebIDE

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News, Technology

4.9696 Ratings

🗓️ 27 October 2025

⏱️ 6 minutes

🧾️ Download transcript

Summary


Bilingual Phishing for Cloud Credentials
Guy observed identical phishing messages in French and English attempting to phish cloud credentials
https://isc.sans.edu/diary/Phishing%20Cloud%20Account%20for%20Information/32416
Kaitai Struct WebIDE
The binary file analysis tool Kaitai Struct is now available in a web only version
https://isc.sans.edu/diary/Kaitai%20Struct%20WebIDE/32422
WSUS Emergency Update
Microsoft released an emergency patch for WSUS to fix a currently exploited critical vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-59287
Network Security Devices Endanger Orgs with 90s-era Flaws
Attackers increasingly use simple-to-exploit network security device vulnerabilities to compromise organizations.
https://www.csoonline.com/article/4074945/network-security-devices-endanger-orgs-with-90s-era-flaws.html

Transcript

Click on a timestamp to play from that location

0:00.0

Hello and welcome to the Monday, October 27th, 2025 edition of the Sands Internet Storm Center's Stormcast.

0:08.7

My name is Johannes Ulrich, recording today from Jacksonville, Florida.

0:13.4

And this episode is brought you by the sands.edu graduate certificate program in Purple Team Operations.

0:20.8

Got two diaries this weekend, first one from Gieghiab. certificate program in Purple Team Operations.

0:22.5

Got two diaries this weekend.

0:28.2

First one from Guy, Ghee being French-Canadian, so his first language is French.

0:34.6

He's actually seeing quite a few fishing emails coming in in French and then identical emails pretty much coming in in English.

0:37.3

This is something that I've always

0:39.2

a little bit wondered about how much of the language of these phishing emails is targeted

0:45.1

to the recipients. Of course, in particular in Canada, it's a little bit hard to tell if a particular

0:51.1

person speaks French, doesn't speak French, but interesting that essentially

0:56.1

the same email is being used for French as well as English. And, well, I guess attackers

1:03.8

are trying to appeal them more to speakers of French because they are often more used.

1:16.7

I notice from Germany as well that the majority of phishing emails is in English.

1:23.0

So whenever there is one in a person's native language, if that's not English, that of course has a somewhat higher chance of success.

1:26.7

And then we have a second diary this weekend from DDA.DTA attended

1:30.1

recently the hack.LU conference.

1:33.1

And at the conference, he saw an interesting presentation from developers of Kaitai Struct.

1:39.4

This is a tool that is being used to analyze malware often.

1:46.4

It basically allows you to analyze various binary formats. Well, they now have a web IDE available that essentially implements everything

1:53.1

in JavaScript. It allows you without having to install any specific tool to simply just run

1:59.8

this cut-hhigh struct tool.

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2025.