ISC StormCast for Friday, April 13th 2018

By Johannes B. Ullrich, Ph.D. Drupal RCE Exploit Released
https://isc.sans.edu/forums/diary/Drupal+CVE20187600+PoC+is+Public/23549/
Broken Macro in Malspam Campaign
https://isc.sans.edu/forums/diary/Glitch+in+malspam+campaign+temporarily+reduces+spread+of+GandCrab/23547/
New Random Number Generator Using Entagled Photons
https://www.nature.com/articles/s41586-018-0019-0.epdf
Fake Updates Campaign Spreading Malware
https://blog.malwarebytes.com/threat-analysis/2018/04/fakeupdates-campaign-leverages-multiple-website-platforms/
Coinsecure Loses 438 BTC in Insider Attack
http://archive.is/Riwv6
Pastebin XSS Vulnerability
https://github.com/Nhoya/PastebinMarkdownXSS
More Here