Internet Storm Center
Sign In
Sign Up
Handler on Duty:
Guy Bruneau
Threat Level:
green
Date
Author
Title
TEST SUPPORT
2025-12-10
Guy Bruneau
Using AI Gemma 3 Locally with a Single CPU
TEST
2025-12-10/a>
Guy Bruneau
Using AI Gemma 3 Locally with a Single CPU
2023-09-29/a>
Xavier Mertens
Are You Still Storing Passwords In Plain Text Files?
2020-08-10/a>
Bojan Zdrnja
Scoping web application and web service penetration tests
2020-06-05/a>
Johannes Ullrich
Cyber Security for Protests
2019-11-29/a>
Russ McRee
ISC Snapshot: Search with SauronEye
2019-10-22/a>
Bojan Zdrnja
Testing TLSv1.3 and supported ciphers
2019-07-23/a>
Bojan Zdrnja
Verifying SSL/TLS configuration (part 1)
2019-04-26/a>
Rob VandenBrink
Pillaging Passwords from Service Accounts
2018-12-16/a>
Guy Bruneau
Random Port Scan for Open RDP Backdoor
2018-07-02/a>
Guy Bruneau
Hello Peppa! - PHP Scans
2018-01-28/a>
Didier Stevens
Is this a pentest?
2017-09-06/a>
Adrien de Beaupre
Modern Web Application Penetration Testing , Hash Length Extension Attacks
2017-05-13/a>
Guy Bruneau
Has anyone Tested WannaCry Killswitch? - https://blog.didierstevens.com/2017/05/13/quickpost-wcry-killswitch-check-is-not-proxy-aware/
2017-05-05/a>
Xavier Mertens
HTTP Headers... the Achilles' heel of many applications
2016-11-02/a>
Rob VandenBrink
What Does a Pentest Look Like?
2016-09-28/a>
Xavier Mertens
SNMP Pwn3ge
2016-09-04/a>
Russ McRee
Kali Linux 2016.2 Release: https://www.kali.org/news/kali-linux-20162-release/
2016-01-20/a>
Xavier Mertens
/tmp, %TEMP%, ~/Desktop, T:\, ... A goldmine for pentesters!
2015-11-09/a>
John Bambenek
ICYMI: Widespread Unserialize Vulnerability in Java
2015-10-27/a>
Xavier Mertens
The "Yes, but..." syndrome
2014-08-12/a>
Adrien de Beaupre
Host discovery with nmap
2014-08-09/a>
Adrien de Beaupre
Complete application ownage via Multi-POST XSRF
2014-04-03/a>
Bojan Zdrnja
Watching the watchers
2013-08-21/a>
Rob VandenBrink
Fibre Channel Reconnaissance - Reloaded
2012-03-09/a>
Guy Bruneau
Nmap 5.61TEST5 released with 43 new scripts,improved OS & version detection, and more available for download - http://nmap.org/download.html
2011-10-26/a>
Rick Wanner
Critical Control 17:Penetration Tests and Red Team Exercises
2011-08-26/a>
Daniel Wesemann
User Agent 007
2011-01-24/a>
Rob VandenBrink
Where have all the COM Ports Gone? - How enumerating COM ports led to me finding a “misplaced” Microsoft tool
2010-11-19/a>
Jason Lam
Exchanging and sharing of assessment results
2010-08-23/a>
Manuel Humberto Santander Pelaez
Firefox plugins to perform penetration testing activities
2010-08-16/a>
Raul Siles
Blind Elephant: A New Web Application Fingerprinting Tool
2010-06-06/a>
Manuel Humberto Santander Pelaez
Nice OS X exploit tutorial
2010-05-22/a>
Rick Wanner
SANS 2010 Digital Forensics Summit - APT Based Forensic Challenge
2010-04-13/a>
Adrien de Beaupre
Web App Testing Tools
2010-02-22/a>
Rob VandenBrink
New Risks in Penetration Testing
2009-11-25/a>
Jim Clausing
Updates to my GREM Gold scripts and a new script
2009-07-27/a>
Raul Siles
New Hacker Challenge: Prison Break - Breaking, Entering & Decoding
2009-05-31/a>
Tony Carothers
L0phtcrack is Back!
2009-04-21/a>
Bojan Zdrnja
Web application vulnerabilities
2008-11-17/a>
Jim Clausing
A new cheat sheet and a contest
2008-09-20/a>
Rick Wanner
New (to me) nmap Features
SUPPORT
2025-12-10/a>
Guy Bruneau
Using AI Gemma 3 Locally with a Single CPU
2025-11-12/a>
Brad Duncan
SmartApeSG campaign uses ClickFix page to push NetSupport RAT
2024-06-17/a>
Xavier Mertens
New NetSupport Campaign Delivered Through MSIX Packages
2023-08-18/a>
Xavier Mertens
From a Zalando Phishing to a RAT
2022-10-21/a>
Brad Duncan
sczriptzzbn inject pushes malware for NetSupport RAT
2020-02-05/a>
Brad Duncan
Fake browser update pages are "still a thing"
2015-06-27/a>
Guy Bruneau
Is Windows XP still around in your Network a year after Support Ended?
2014-07-05/a>
Guy Bruneau
Java Support ends for Windows XP
2012-12-06/a>
Daniel Wesemann
Fake tech support calls - revisited
2012-10-03/a>
Kevin Shortt
Fake Support Calls Reported
2011-05-23/a>
Mark Hofman
Microsoft Support Scam (again)
2010-07-06/a>
Rob VandenBrink
Bogus Support Organizations use Live Operators to Install Malware
2010-06-15/a>
Manuel Humberto Santander Pelaez
Microsoft Windows Help and Support Center vulnerability (CVE 2010-1885) exploit in the wild
2010-03-01/a>
Mark Hofman
Microsoft will drop support for Vista (without any Service Packs) on April 13 and support for XP SP2 ends July 13. (i.e. no more security updates). If you are still running these, it it time to update.
2010-02-03/a>
Rob VandenBrink
Support for Legacy Browsers
Homepage
Diaries
Podcasts
Jobs
Data
TCP/UDP Port Activity
Port Trends
SSH/Telnet Scanning Activity
Weblogs
Domains
Threat Feeds Activity
Threat Feeds Map
Useful InfoSec Links
Presentations & Papers
Research Papers
API
Tools
DShield Sensor
DNS Looking Glass
Honeypot (RPi/AWS)
InfoSec Glossary
Contact Us
Contact Us
About Us
Handlers
About Us
Slack Channel
Mastodon
Bluesky
X
Have you seen our swag?
Buy SANS ISC Gear