ISC StormCast for Friday, April 8th, 2022
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 8 April 2022
⏱️ 16 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello, welcome to the Friday, April 8, 2000, 22 edition of the Sandsenet Storm Center's Stormcast. My name is Johannes Ulrich, and today I'm recording from Jacksonville, Florida. |
| 0:13.5 | I wrote a quick post today about Beamy, and I hope I pronounce it correctly. It's an acronym B-I-I-M-I, and it stands for brand indicators for message identification. |
| 0:26.1 | And it's supposed to supplement the more technical standards like D-Mark, D-KIM, SPF, |
| 0:33.4 | in order to provide users with an easier way to detect if a particular email is legitimate or not. |
| 0:42.7 | Now, the trick here is that essentially the email sender is able to identify a logo that will be |
| 0:50.6 | added in the email client next to the email, typically already in the preview pane, |
| 0:57.8 | and this is supposed to help users decide that a particular email is coming from an actual |
| 1:04.7 | organization. Now, how is it all supposed to work and how are people not supposed to be able to fake those images? |
| 1:13.5 | Well, first of all, you need a special DNS records. |
| 1:17.2 | Everything about these email standards usually evolves around DNS text records. |
| 1:23.0 | In this case, the most basic form just includes a URL for the image. |
| 1:29.1 | Of course, that's something that could easily be faked. |
| 1:31.6 | Someone else could just copy the image, create the text record for a lookalike domain, |
| 1:38.0 | and impersonate the particular entity. |
| 1:41.9 | But an extension to this standard then also allows for a certificate to be added. |
| 1:48.7 | And this is where things get a little bit more tricky and more difficult to implement. |
| 1:52.8 | In order to obtain a certificate that will be trusted, you first need a trademark for the |
| 1:59.8 | particular image, and that sort of makes sense. |
| 2:02.8 | And then you need, of course, to buy the certificate. |
| 2:05.8 | And that's currently, in my opinion, at least pretty expensive. |
| 2:09.4 | It's sort of in the $1,000 to $1,500 range. |
| 2:14.6 | And it's, of course, yet another certificate that you need to renew annually. |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

