ISC Stormcast For Wednesday, September 23rd, 2026 https://isc.sans.edu/podcastdetail/10106, (Wed, Sep 23rd)
2026-09-23T13:23:41Z•cdccf370507a7caa7d3ea1f9c67fc7d5fd706ebe75dbcdb76d725753bb8bd743
ClickFixHTTP QUERYHTTP standardsLausivLoaderMacfingerPNG steganographySANS ISCTerminalFixmalspammultistage malwarephishingreverse tunnel
What happened
SANS ISC Diary RSS entries covering September 17–23, 2026. Notable security topics include the Macfinger ClickFix campaign, LausivLoader malware delivery and multistage data transfer, TerminalFix using PNG steganography and reverse tunneling, and the newly defined HTTP QUERY method. The document is an index of articles and contains no explicit indicators of compromise or confirmed CVE identifiers.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- sans_isc_diary
- Record identifier
- cdccf370507a7caa7d3ea1f9c67fc7d5fd706ebe75dbcdb76d725753bb8bd743
- Enrichment time
- 2026-09-23T13:23:41Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.