Handler on Duty: Didier Stevens
Threat Level: green
Podcast Detail
Packet Tuesday; Mastodon Bug; Zendesk SQLi; EV Charger Security;
If you are not able to play the podcast using the player below: Use this direct link to the audio file: https://traffic.libsyn.com/securitypodcast/8260.mp3

SANS Daily Network Security Podcast (Stormcast) for Wednesday, November 16th, 2022
00:00
Interested in Internet Storm Center stickers? Check here if there are still some available for today.
Packet Tuesday
https://packettuesday.com
Stealing Passwords From Infosec Mastodon - Without Bypassing CSP
https://portswigger.net/research/stealing-passwords-from-infosec-mastodon-without-bypassing-csp
SQLi and Access Flaws in Zendesk
https://www.varonis.com/blog/zendesk-sql-injection-and-access-flaws
Electric Vehicle Charging Infrastructure
https://newsreleases.sandia.gov/ev_security/
https://packettuesday.com
Stealing Passwords From Infosec Mastodon - Without Bypassing CSP
https://portswigger.net/research/stealing-passwords-from-infosec-mastodon-without-bypassing-csp
SQLi and Access Flaws in Zendesk
https://www.varonis.com/blog/zendesk-sql-injection-and-access-flaws
Electric Vehicle Charging Infrastructure
https://newsreleases.sandia.gov/ev_security/
Discussion
New Discussions closed for all Podcasts older than two(2) weeks
Please send your comments to our Contact Form