SANS Stormcast Tuesday, March 24th, 2026: Tax Scam to EDR Kill; Netscaler Patches; gRPC-Go Authz Bypass;
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 24 March 2026
⏱️ 6 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello and welcome to the Tuesday, March 24th, 2006 edition of the Sands Internet Storm Centers. |
| 0:11.8 | Stormcast, my name is Johannes Ulrich, recording today in Jacksonville, Florida. |
| 0:17.9 | And this episode is brought you by the sands.edu graduate certificate program in |
| 0:23.3 | cyber defense operations. Well, in Diaries today, Jim today has another win for allowing |
| 0:31.0 | AI to do security reviews of your code. Jim has published numerous different forensics and reverse analysis tools as part of his |
| 0:40.2 | GitHub repo. Well, he had it now security reviewed by Claude Code and has actually found a number of |
| 0:48.8 | interesting vulnerabilities, some little bits of standard. like for example, in his mail analyzer, |
| 0:56.0 | there was sort of a header injection issue. It was kind of interesting, but also some |
| 1:00.6 | a little more subtle ones, like for example, time of check and time of use vulnerabilities. |
| 1:07.4 | Well, if you're using any of Jim's tool, please update all the patches have been released |
| 1:12.8 | to the GitHub repo. |
| 1:15.2 | Let's start today a little bit with an awareness item, and while we're coming up here in the United |
| 1:20.6 | States on the tax filing season, the deadline is April 15th, and with that, there's always |
| 1:26.6 | an increase in scams attempting people to |
| 1:29.7 | download software or reveal their information to websites claiming to be associated with tax |
| 1:37.2 | filings. Well, this year, according to Hunters, there is one particular trick that they're |
| 1:44.0 | seeing, and that's basically fake Google ads. |
| 1:48.1 | So, well, the Google Ads are actually real, but they're leading to malicious or fake products. |
| 1:53.8 | And these products are like PDF fillers and things like that that may come handy if you're trying to fill out attacks form. |
| 2:02.6 | Also, some of these attacks are then redirecting users to fake browser updates. |
| 2:09.4 | But what I found interesting is that they're not just simple, well, you know, let's download |
| 2:15.4 | some software and steal some information or some basic fishing, as we have seen in the past. |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

