A true architect of modern horror comics: Stephen Bissette (Swamp Thing, Taboo, Tyrant) joins the show to discuss his incredible journey from the first graduating class of the Joe Kubert School to becoming a pioneer of independent publishing. Steve is also working with Lighthouse Press to officially bring back his Read More
Send a textDr. Robert Pearl joins Dr. Erich Schramm to discuss the burgeoning role AI will play in the American healthcare system and how doctors may be able to leverage the systems to spend more time with patients who need interventions and achieve better patient outcomes for all. They spend Read More
Quick Howto: ZIP Files Inside RTF https://isc.sans.edu/diary/Quick+Howto+ZIP+Files+Inside+RTF/32696/#comments Keeping the Internet fast and secure: introducing Merkle Tree Certificates https://blog.cloudflare.com/bootstrap-mtc/ Taming Agentic Browsers: Vulnerability in Chrome Allowed Extensions to Hijack New Gemini Panel https://unit42.paloaltonetworks.com/gemini-live-in-chrome-hijacking/
Send a textDr. Michael Koren joins Kevin Geddings to discuss an eventful weekend, focusing on the passing of singer, songwriter, and pianist Neil Sedaka. The doctor talks about how a teacher early in the musician's life changed his trajectory and that teachers in general undersand the importance of bringing students Read More
Fake Fedex Email Delivers Donuts! https://isc.sans.edu/diary/Fake%20Fedex%20Email%20Delivers%20Donuts!/32754 Abusing .ARPA: The TLD that isn t supposed to host anything https://www.infoblox.com/blog/threat-intelligence/abusing-arpa-the-tld-that-isnt-supposed-to-host-anything/ MC1179154 - Microsoft Authenticator app: Upcoming changes to jailbreak and root detection https://mc.merill.net/message/MC1179154 SECURITY BULLETIN: Apex One and Apex One (Mac) - February 2026 https://success.trendmicro.com/en-US/solution/KA-0022458 Special Webcast: AirSnitch How Worried Should You Read More
Finding Signal in the Noise: Lessons Learned Running a Honeypot with AI Assistance [Guest Diary] https://isc.sans.edu/diary/Finding%20Signal%20in%20the%20Noise%3A%20Lessons%20Learned%20Running%20a%20Honeypot%20with%20AI%20Assistance%20%5BGuest%20Diary%5D/32744 Google API Keys Weren't Secrets. But then Gemini Changed the Rules. https://trufflesecurity.com/blog/google-api-keys-werent-secrets-but-then-gemini-changed-the-rules AirSnitch: Demystifying and Breaking Client Isolation in Wi-Fi Networks https://www.ndss-symposium.org/ndss-paper/airsnitch-demystifying-and-breaking-client-isolation-in-wi-fi-networks/
Welcome to Episode 422 of the Microsoft Cloud IT Pro Podcast. In this episode, Scott and Ben discuss their growing use of in their daily workflows, particularly Claude Code, GitHub Copilot CLI, and Gemini CLI. They explore how these command-line interfaces offer powerful ways to interact with local files and Read More
In this episode, we sit down with Commander Eric Tung, the visionary behind Blue Grit, who’s on a mission to elevate the lives and careers of Law Enforcement Officers. Get ready to delve into the art of resilience—how can we not only strengthen ourselves but also inspire those around us? We’ll Read More
Send a textDr. Gagandeep Singh joins Dr. Michael Koren to discuss his triangle approach, which combines the talents of a medical doctor, a nutritionist, and a trainer to tackle the medications, diets, and exercise changes needed to make a difference in metabolic diseases. Metabolic diseases include diabetes, hypertension, obesity, and Read More
Send a textDr. Michael Koren joins Kevin Geddings to contrast the fragmented NBC coverage of the Winter Olympics to the more comprehensive level of attention and care granted by clinical research staff. The doctor expresses woe at the lack of a national "moment" that should have been granted by back-to-back Read More
Under the Hood of DynoWiper https://isc.sans.edu/diary/Under%20the%20Hood%20of%20DynoWiper/32730 Vibe Password Generation: Predictable by Design https://www.irregular.com/publications/vibe-password-generation Vulnerabilities (CVE-2025-65715, CVE-2025-65716, CVE-2025-65717) in four popular IDE Extensions https://www.ox.security/blog/four-vulnerabilities-expose-a-massive-security-blind-spot-in-ide-extensions/ Grandstream GXP1600 VoIP Phones https://www.rapid7.com/blog/post/ve-cve-2026-2329-critical-unauthenticated-stack-buffer-overflow-in-grandstream-gxp1600-voip-phones-fixed/
Tracking Malware Campaigns With Reused Material https://isc.sans.edu/diary/Tracking%20Malware%20Campaigns%20With%20Reused%20Material/32726 From BRICKSTORM to GRIMBOLT: UNC6201 Exploiting a Dell RecoverPoint for Virtual Machines Zero-Day https://cloud.google.com/blog/topics/threat-intelligence/unc6201-exploiting-dell-recoverpoint-zero-day Windows Admin Center Elevation of Privilege Vulnerability CVE-2026-26119 https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26119 DNS-PERSIST-01: A New Model for DNS-based Challenge Validation https://letsencrypt.org/2026/02/18/dns-persist-01.html Defending Web Apps https://www.sans.org/cyber-security-courses/application-security-securing-web-apps-api-microservices
Imagine a system that tracks not just the nature of the calls we do, but the hidden costs of cumulative trauma, organizational stressors, and behavioral health risk. This is a high-stakes conversation about resilience in a field where the emotional toll can be as devastating as the physical one.This episode Read More
Send a textEndurance training coach Owen Shott joins cardiologist Michael Koren to discuss electrolytes. The two experts discuss the role of electrolytes in the body and in the commercial marketplace. They review what electrolytes are, the major electrolytes we need, why they may be depleted in some athletes, and how Read More
Fake Incident Report Used in Phishing Campaign https://isc.sans.edu/diary/Fake%20Incident%20Report%20Used%20in%20Phishing%20Campaign/32722 Divide and conquer: how the new Keenadu backdoor exposed links between major Android botnets https://securelist.com/keenadu-android-backdoor/118913/ CVE-2026-25903: Apache NiFi: Missing Authorization of Restricted Permissions for Component Updates https://seclists.org/oss-sec/2026/q1/166 The Next Frontier of Runtime Assembly Attacks: Leveraging LLMs to Generate Phishing JavaScript in Real Read More