meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS Stormcast Wednesday, March 4th, 2026: CrushFTP Brute Force; Android Patches 0-Day; 0Auth Phishing Abuse

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News

4.9754 Ratings

🗓️ 4 March 2026

⏱️ 5 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. SANS Stormcast Wednesday, March 4th, 2026: CrushFTP Brute Force; Android Patches 0-Day; 0Auth Phishing Abuse

Transcript

Click on a timestamp to play from that location

0:00.0

Hello and welcome to the Wednesday, March 4th,

0:07.3

2006 edition of the Sands Internet Storm Centers.

0:11.9

Stormcast, my name is Johannes Ulrich, recording today from Jacksonville, Florida.

0:17.6

And this episode is brought you by the Sands.edu undergraduate certificate program in Applied Cybersecurity Security.

0:25.5

Today's diary is about, well, some brute force attacks against crush FTP. Actually, not sure if I should even call it a prude force attack.

0:33.8

It's really more just looking for common default passwords. However, just want to put a couple of things clear here.

0:41.3

First of all, this is not a vulnerability in Crush FPP.

0:44.3

There have been significant vulnerabilities in the past.

0:46.9

This is not one of them.

0:49.2

All they're looking for is for users who set up Crush FTP with an admin user of Crush Admin and a password of

0:58.5

Crush Admin. I went through the setup of Crush FPP and as you're setting it up, it basically

1:06.2

asks you, hey, what is the username you want to use for a crush FTP, for the admin user?

1:12.9

In the documentation, Crush Admin is one out of a few that they recommend,

1:18.3

kind of that you use for a username.

1:20.2

However, there is no default or recommended password.

1:23.8

So really, if you're picking the password Crush admin, it's on you. It's your mistake. It's nothing really that crush FTP really did wrong here other than maybe they should prevent some really stupid passwords like that.

1:37.7

And today's also Android patch Tuesday. So with that, we got patches from Google for 140 different vulnerabilities.

1:47.5

Noteworthy here is one vulnerability that affects the Qualcomm display drivers. And this particular

1:55.9

vulnerability is already exploited in the wild. And well, it's one of those memory management issues.

2:02.3

They have released a patch for it now with this update,

2:06.1

so make sure that you're keeping your Android phones updated,

2:09.9

even though it, as I always say, may take a while for these patches

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.