#SANSISC

Xavier Mertens 🇧🇪xme@infosec.exchange
2025-06-11

Quasar RAT Delivered Through Bat Files #SANSISC
isc.sans.edu/diary/32036

Xavier Mertens 🇧🇪xme@infosec.exchange
2025-06-05

Be Careful With Fake Zoom Client Downloads #SANSISC
isc.sans.edu/diary/32014

Xavier Mertens 🇧🇪xme@infosec.exchange
2025-02-27

Njrat Campaign Using Microsoft Dev Tunnels
isc.sans.edu/diary/31724
#SANSISC

Xavier Mertens 🇧🇪xme@infosec.exchange
2025-02-19

XWorm Cocktail:  A Mix of PE data with PowerShell Code isc.sans.edu/diary/31700 #SANSISC

Xavier Mertens 🇧🇪xme@infosec.exchange
2025-02-15

The Danger of IP Volatility
isc.sans.edu/diary/31688
#SANSISC

Xavier Mertens 🇧🇪xme@infosec.exchange
2025-02-14

Fake BSOD Delivered by Malicious Python Script
isc.sans.edu/diary/31686
#SANSISC

Xavier Mertens 🇧🇪xme@infosec.exchange
2025-01-29

From PowerShell to a Python Obfuscation Race! isc.sans.edu/diary/31634 #SANSISC

Xavier Mertens 🇧🇪xme@infosec.exchange
2025-01-28

Fileless Python InfoStealer Targeting Exodus isc.sans.edu/diary/31630 #sansisc

Xavier Mertens 🇧🇪xme@infosec.exchange
2024-11-30

From a Regular Infostealer to its Obfuscated Version isc.sans.edu/diary/31484 #SANSISC

Xavier Mertens 🇧🇪xme@infosec.exchange
2024-11-05

Python RAT with a Nice Screensharing Feature isc.sans.edu/diary/31414 #SANSISC

2023-08-02

Gotta say, one month after posting this and regularly trying to listen to podcasts like the SANS Internet Stormcenter[1], I still don't get it. But I was able to narrow down my issues with that form of infotainment.

First of all, I have to have my headphones on to listen to podcasts because I'm not some degenerate who just blasts Johannes Ullrich's godly voice to the masses. This kinda works out when I'm in public transport to the office (
#DeathBeforePublicTransportWithoutHeadphones), but when working from home, it's not that simple - or at least, it's not a habit (yet?). So that kinda limits my window of opportunity to just a few hours per week.

Then, I found out that I just tend to do other stuff - i.e. working on my photography stuff or my infosec job. This usually puts me in
✨tHe ZoNe✨ and I just blank out everything I hear. And suddenly, the day is over, you go to sleep, and a few hours later AntennaPod sends you a notification that the next daily episode is available. Rinse and repeat.

With music, that's totally fine. It's not like you need to religiously follow each line of Cardi B.'s "
Wet Ass Pussy" to get the full story. With podcasts, you just miss info all the time if you don't focus. You can't blank out. You have to sit down and listen to the speakers, as if they were in the room, talking to you. Everything else is kinda rude.

So, interim conclusion, I guess? It's complicated. Habits only stick if you have as little friction as possible.



Will Markus ever reconcile with the Casting of Pods? Tune in next month to read the new episode of "What The Actual Fuck Is The Deal With Podcasts??" by
@markuswet


_____________
#SANS #InternetStormCenter #SANSISC #JohannesUllrich #Podcast #Podcasts

[1]
https://isc.sans.edu/podcast.html

RE:
https://toot.io/users/markuswet/statuses/110641309145744011

2018-01-05
ISC StormCast for Friday, January 5th 2018 #sansisc #security #podcast https://isc.sans.edu/podcastdetail.html?id=5813
2018-01-04
Spectre and Meltdown: What You Need to Know Right Now, (Thu, Jan 4th) #sansisc #security https://isc.sans.edu/diary/rss/23193
2018-01-04
Firefox confirms web-based exploitation of Meltdown/Spectre possible, patch ASAP. https://blog.mozilla.org/security/2018/01/03/mitigations-landing-new-class-timing-attack/, (Thu, Jan 4th) #sansisc #security https://isc.sans.edu/diary/rss/23189
2018-01-04
ISC StormCast for Thursday, January 4th 2018 #sansisc #security #podcast https://isc.sans.edu/podcastdetail.html?id=5811
2018-01-04
ISC Stormcast For Thursday, January 4th 2018 https://isc.sans.edu/podcastdetail.html?id=5811, (Thu, Jan 4th) #sansisc #security https://isc.sans.edu/diary/rss/23187
2018-01-03
Phishing to Rural America Leads to Six-figure Wire Fraud Losses, (Wed, Jan 3rd) #sansisc #security https://isc.sans.edu/diary/rss/23185
2018-01-03
ISC Stormcast For Wednesday, January 3rd 2018 https://isc.sans.edu/podcastdetail.html?id=5809, (Wed, Jan 3rd) #sansisc #security https://isc.sans.edu/diary/rss/23183
2018-01-03
ISC StormCast for Wednesday, January 3rd 2018 #sansisc #security #podcast https://isc.sans.edu/podcastdetail.html?id=5809

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst