SANS Stormcast Monday, December 15th, 2025: DLL Entry Points; ClickFix and Finger; Apple Patches

DEC 15, 20256 MIN
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS Stormcast Monday, December 15th, 2025: DLL Entry Points; ClickFix and Finger; Apple Patches

DEC 15, 20256 MIN

Description

<br/> Abusing DLLs EntryPoint for the Fun<br/> DLLs will not just execute code when some of their functions are called, but also as they are loaded.<br/> <a href="https://isc.sans.edu/diary/Abusing%20DLLs%20EntryPoint%20for%20the%20Fun/32562">https://isc.sans.edu/diary/Abusing%20DLLs%20EntryPoint%20for%20the%20Fun/32562</a><br/> Apple Patches Everything: December 2025 Edition<br/> Apple released patches for all of its operating systems, fixing two already exploited vulnerabilities.<br/> ClickFix Attacks Still Using the Finger<br/> ClickFix Attacks Still Using the Finger<br/> Two examples of ClickFix attacks abusing the finger protocol to load additional malware<br/> Denial of Service and Source Code Exposure in React Server Components<br/> Denial of Service and Source Code Exposure in React Server Components<br/> After last week's critical patch, three more, but less critical, vulnerabilities were identified in React Server Components.<br/> <a href="https://react.dev/blog/2025/12/11/denial-of-service-and-source-code-exposure-in-react-server-components">https://react.dev/blog/2025/12/11/denial-of-service-and-source-code-exposure-in-react-server-components</a><br/>