SANS Stormcast Tuesday, February 3rd, 2026: Scanning for AI; Notepad++ Compromise; OpenClaw Vulnerabilities
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 3 February 2026
⏱️ 6 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello and welcome to the Tuesday, February 3, 2026 edition of the Sands Internet Storm Center's Stormcast. |
| 0:12.7 | My name is Johannes Ulrich, recording today from Jacksonville, Florida. |
| 0:17.8 | And this episode is brought you by the Sands.edu graduate certificate program in incident response. |
| 0:24.8 | So today's episode will be a little bit AI heavy. Sorry for that, but we'll start with some simple scanning |
| 0:31.8 | for anthropic models. That's something that we detected over the weekend in our honeypots. Not how I'm |
| 0:38.5 | sure what they're going after, but I assume that they're looking for people who have installed |
| 0:44.6 | some at least anthropic-related models on their own system, then expose it. Maybe some system |
| 0:51.6 | also expose them via proxies. I've seen that. So |
| 0:55.9 | here they may take advantage of |
| 0:57.9 | any API keys or so that |
| 1:00.0 | are preloaded and in the proxy |
| 1:01.8 | that they can abuse. But |
| 1:03.7 | either way, the scans came |
| 1:05.7 | from a Tor exit node. |
| 1:08.1 | And if you're doing anything like this, |
| 1:09.8 | please just don't expose them to the internet. |
| 1:13.6 | A Notepad Plus Plus today did release an advisory stating that their update website had |
| 1:20.6 | been compromised at least since June 2025. |
| 1:24.6 | Now this became sort of news in December last year when people noticed that something is wrong |
| 1:31.1 | here with certain files being downloaded from the website. |
| 1:35.9 | According to this advisory now, it looks like there was a compromise of the hosting infrastructure, |
| 1:42.2 | so nothing that Notepad++ directly controlled. |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

