ISC Stormcast For Thursday, July 2nd, 2026 https://isc.sans.edu/podcastdetail/9992, (Thu, Jul 2nd)
2026-07-02T13:23:51Z•97b521a717ba2805dc2c721b3a194a9c1c5195ba38fea66436bbd07c9be22816
Apple security updatesISC StormcastMITRE ATT&CK T1036SafariVelvet AntYARAYARA-Xautomated cybercrimecredential theftcryptocurrencyfaviconhost reconnaissanceiOSiPadOSmacOSmalware obfuscationmetamaskpentestingphishingpodcastprocess masqueradingrecon automation
What happened
A set of ISC SANS Diary entries (late June–early July 2026) covering multiple topics: a Metamask-targeting phishing campaign that solicits credentials/‘secret codes’; Apple’s June 2026 security updates for iOS/iPadOS, macOS and Safari; YARA-X 1.18.0/1.19.0 releases; automation techniques for favicon-based host reconnaissance; analysis of Linux process name masquerading (malware obfuscation, mapped to MITRE ATT&CK T1036) including reference to Velvet Ant; and other Stormcast podcast updates and a guest diary on automated cybercrime.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- sans_isc_diary
- Record identifier
- 97b521a717ba2805dc2c721b3a194a9c1c5195ba38fea66436bbd07c9be22816
- Enrichment time
- 2026-07-02T13:23:51Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.