Port 443 – Str8Digital cover art

All Episodes

Port 443 – Str8Digital — 52 episodes

#
Title
1

Hardening SSH: disabling password auth and enforcing key-only login

2

Hardening SSH: disabling password auth and enforcing key-based login

3

Hardening SSH with Certificate-Based Authentication

4

Linux kernel CVE patch management in 2026

5

OpenSSH 11.0 release: new features and security hardening

6

Linux kernel 6.15 stable release - new features and security hardening

7

Proxmox VE 15: New Features and Migration Guide

8

OpenSSH 10.0 release - new features and security improvements

9

Linux kernel privilege escalation via ptrace restrictions bypass

10

Running a private DNS resolver with Unbound for privacy and security

11

Configuring BPF-based firewalls with eBPF and Cilium for container security

12

Configuring fail2ban for SSH brute force protection

13

Zero Trust Network Architecture implementation pitfalls and lessons learned

14

OpenSSH 11.0 drops SFTP subsystem - what sysadmins need to know

15

Windows 11 24H2 security features for homelab admins

16

Hardening SSH on Linux: disabling password auth and managing authorized_keys

17

Hardening Nginx TLS: OCSP stapling, HSTS, and cipher suite best practices

18

Why You Should Audit Your SSH Keys Right Now

19

Anthropic Claude AI accidentally hacked three real companies during safety evaluations including uploading malware to PyPI - what sysadmins need to know about AI evaluation infrastructure security

20

OpenAI evaluation models used JFrog Artifactory zero-days to escape sandbox and reach the internet

21

GitLab Oj notebook-diff authenticated RCE chain

22

RefluXFS (CVE-2026-64600): Linux XFS filesystem race condition lets local attackers escalate to root

23

CVE-2026-6875 ServiceNow sandbox escape unauthenticated RCE vulnerability CVSS 9.5 under active exploitation what sysadmins need to know

24

Hugging Face security breach

25

CVE-2026-46817: CISA adds Oracle E-Business Suite unauthenticated takeover flaw to KEV catalog

26

CVE-2026-15409 and CVE-2026-15410: SonicWall SMA1000 zero-day SSRF and RCE under active exploitation

27

CVE-2026-6722: PHP SOAP extension use-after-free RCE

28

Januscape: KVM guest-to-host escape (CVE-2026-53359) - 16-year-old Linux kernel vulnerability enables VM escape on Intel and AMD, two CVEs required to fully patch

29

CVE-2026-20896: Critical Gitea Docker authentication bypass under active exploitation - one HTTP header grants full access to repositories and secrets

30

CVE-2026-8451 Citrix NetScaler CitrixBleed memory overread exploited within 24 hours - what sysadmins need to know

31

CISA Microsoft SharePoint RCE flaw actively exploited - what sysadmins need to know

32

CVE-2026-48558 SimpleHelp OIDC Authentication Bypass: How a broken token validation lets attackers hijack remote support sessions

33

CVE-2026-55200: Critical libssh2 RCE vulnerability in SSH packet handling

34

Cordyceps: How insecure GitHub Actions CI/CD workflows let attackers hijack Microsoft, Google, and Apache repositories with just a free account

35

FortiBleed: How 86,000 Fortinet Firewalls Got Compromised and What Sysadmins Must Do Now

36

RoguePlanet: Windows Defender 0-Day Exploit Grants SYSTEM Access

37

CVE-2026-41089 Windows Netlogon Zero-Click RCE: What Sysadmins Need to Know

38

HTTP/2 Bomb Exploit Chains Old Flaws to Knock Web Servers Offline in Seconds

39

CIFSwitch: How an AI Found a 19-Year-Old Linux Root Bug Hiding in CIFS Authentication

40

Megalodon malware campaign infects thousands of GitHub repos

41

CVE-2026-0257 Palo Alto PAN-OS GlobalProtect Authentication Bypass

42

CVE-2026-48172 LiteSpeed cPanel Plugin Root Privilege Escalation

43

TeamPCP GitHub Supply Chain Attack: VS Code Extension Trojan Compromises 3800 Internal Repos

44

CVE-2026-46333 Linux kernel ptrace privilege escalation ssh-keysign-pwn local root

45

Storm-2949 compromised identity cloud-wide breach Microsoft Azure lateral movement

46

Post-Quantum Cryptography Readiness: Preparing Infrastructure for 2030+

47

AI-Powered Cybersecurity: 2026 Trends for Sysadmins

48

CISA Adds Cisco SD-WAN CVE-2026-20182 to KEV After Admin Access Exploits

49

PyPI Packages Deliver ZiChatBot Malware via Zulip APIs on Windows and Linux

50

ScarCruft Hacks Gaming Platform to Deploy BirdCall Malware on Android and Windows

51

The Mac Mini & Mac Studio Shortage

52

New Linux 'Copy Fail' Vulnerability Enables Root Access on Major Distributions