ISC Stormcast For Friday, April 24th, 2026 https://isc.sans.edu/podcastdetail/9906, (Fri, Apr 24th)

2026-04-24T13:23:48Z891bc6ac9bf4a294fb45c996c9de97e5311b490df17132c3c6177e6d1fb14e8a
CVE-2026-28950EPS Sappleaudio-steganographycredential-harvestingiosipadOSmalwarenotification-servicespatchpodcastsans-isctdatatelegramthreat-reportvulnerability-managementwav

What happened

SANS ISC diary entries (Apr 17–24, 2026) covering multiple topics: Apple released iOS/iPadOS 26.4.2 and iOS/iPadOS 18.7.8 to fix a Notification Services vulnerability tracked as CVE-2026-28950; a guest diary discusses Telegram tdata being used as a credential-harvesting vector following a honeypot incident; reports of threat actors delivering malware via .wav audio files; an analysis on handling large numbers of CVE disclosures using EPSS; plus several ISC Stormcast podcast entries.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
sans_isc_diary
Record identifier
891bc6ac9bf4a294fb45c996c9de97e5311b490df17132c3c6177e6d1fb14e8a
Enrichment time
2026-04-24T13:23:48Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.