DiscoverSANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)SANS Stormcast Thursday July 31st, 2025: Firebase Security; WebKit Vuln Exploited; Scattered Spider Update
SANS Stormcast Thursday July 31st, 2025: Firebase Security; WebKit Vuln Exploited; Scattered Spider Update

SANS Stormcast Thursday July 31st, 2025: Firebase Security; WebKit Vuln Exploited; Scattered Spider Update

Update: 2025-07-31
Share

Description



Securing Firebase: Lessons Re-Learned from the Tea Breach

Inspried by the breach of the Tea app, Brendon Evans recorded a video to inform of Firebase security issues

https://isc.sans.edu/diary/Securing%20Firebase%3A%20Lessons%20Re-Learned%20from%20the%20Tea%20Breach/32158

WebKit Vulnerability Exploited before Apple Patch

A WebKit vulnerablity patched by Apple yesterday has already been exploited in Google Chrome. Google noted the exploit with its patch for the same vulnerability in Chrome.

https://nvd.nist.gov/vuln/detail/CVE-2025-6558

Scattered Spider Update

CISA released an update for its report on Scattered Spider, noting that the group also calls helpdesks impersonating users, not just the other way around.

https://www.cisa.gov/news-events/cybersecurity-advisories/aa23-320a
Comments 
In Channel
loading
00:00
00:00
x

0.5x

0.8x

1.0x

1.25x

1.5x

2.0x

3.0x

Sleep Timer

Off

End of Episode

5 Minutes

10 Minutes

15 Minutes

30 Minutes

45 Minutes

60 Minutes

120 Minutes

SANS Stormcast Thursday July 31st, 2025: Firebase Security; WebKit Vuln Exploited; Scattered Spider Update

SANS Stormcast Thursday July 31st, 2025: Firebase Security; WebKit Vuln Exploited; Scattered Spider Update

Dr. Johannes B. Ullrich