ISC Stormcast For Thursday, July 2nd, 2026 https://isc.sans.edu/podcastdetail/9992, (Thu, Jul 2nd)

2026-07-03T01:24:01Z1e15c92baa7c8eb7077daa459bff343d6771ab7544a965603af7573fdcd797a1
T1036apple-updatescryptocurrencyfavicon-reconlinuxmalware-obfuscationmetamaskmitre-attckpentestingphishingprocess-masqueradingreconnaissancesecurity-patchthreat-intelyarayara-x

What happened

An ISC SANS Diary RSS digest (late June–early July 2026) covering multiple security topics: a phishing campaign targeting MetaMask cryptocurrency wallet (phishing email using “secret codes”), Apple June 2026 security updates for iOS/iPadOS/macOS/Safari, YARA-X 1.18.0/1.19.0 releases (improvements and bugfixes), Linux process name masquerading techniques (MITRE ATT&CK T1036) and associated malware obfuscation (noting use by groups such as Velvet Ant), automation for favicon-based host reconnaissance, and a guest diary assessing automated cybercrime. No specific CVE identifiers were referenced.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
sans_isc_diary
Record identifier
1e15c92baa7c8eb7077daa459bff343d6771ab7544a965603af7573fdcd797a1
Enrichment time
2026-07-03T01:24:01Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.