SANS Stormcast Monday, December 15th, 2025: DLL Entry Points; ClickFix and Finger; Apple Patches
DEC 15, 20256 MIN
SANS Stormcast Monday, December 15th, 2025: DLL Entry Points; ClickFix and Finger; Apple Patches
DEC 15, 20256 MIN
Description
<br/>
Abusing DLLs EntryPoint for the Fun<br/>
DLLs will not just execute code when some of their functions are called, but also as they are loaded.<br/>
<a href="https://isc.sans.edu/diary/Abusing%20DLLs%20EntryPoint%20for%20the%20Fun/32562">https://isc.sans.edu/diary/Abusing%20DLLs%20EntryPoint%20for%20the%20Fun/32562</a><br/>
Apple Patches Everything: December 2025 Edition<br/>
Apple released patches for all of its operating systems, fixing two already exploited vulnerabilities.<br/>
ClickFix Attacks Still Using the Finger<br/>
ClickFix Attacks Still Using the Finger<br/>
Two examples of ClickFix attacks abusing the finger protocol to load additional malware<br/>
Denial of Service and Source Code Exposure in React Server Components<br/>
Denial of Service and Source Code Exposure in React Server Components<br/>
After last week's critical patch, three more, but less critical, vulnerabilities were identified in React Server Components.<br/>
<a href="https://react.dev/blog/2025/12/11/denial-of-service-and-source-code-exposure-in-react-server-components">https://react.dev/blog/2025/12/11/denial-of-service-and-source-code-exposure-in-react-server-components</a><br/>