meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Friday, August 19th, 2022

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News

4.9754 Ratings

🗓️ 19 August 2022

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. Cowrie Summaries; TP-Link; Safari Update; iOS VPN Leaks

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Friday, August 19, 2020 edition of the Sands Internet Storm Center's Stormcast.

0:09.5

My name is Johannes Ulrich, and today I'm recording from Jacksonville, Florida.

0:14.6

Our diary today is coming from Jesse LeCrew again.

0:18.3

As part of his Sands College undergraduate internship, he created a useful

0:24.1

Python script that will summarize logs from your Kauri Honeypaw. It'll summarize commands being

0:29.9

executed by a particular attacker in a session, then look up IP addresses being used as part

0:36.8

of the attack, as well as sent binaries to VirusTotal

0:41.2

to see if they are already known and malicious. Pretty nice time saver, and he's walking you

0:48.3

through the tool with screenshots so you can see exactly what it does for you.

0:56.6

And if you're using a TPLink router, it may need an update.

1:02.3

The update this time affects the TLWR 841N routers.

1:09.1

These routers suffer from a buffer overflow in the built-in PING utility.

1:13.4

The vulnerability was found by Tranmin Kwon, and all you need to do to exploit it is pass an overly long IP address to the PING function built into the Routers' web-based admin interface.

1:26.3

So, in short, patch and do not expose those

1:30.2

admin interfaces. A proof of concert exploit is available, but also is updated firmware.

1:38.7

And yesterday we got patches from Apple for the most recent version of their operating systems. But I mentioned,

1:46.7

well, these two vulnerabilities that they patched, they may also affect older versions of

1:53.0

your operating system and these were already exploited vulnerabilities. Well, today we got an

1:58.2

update for Safari. So this is a standalone update for Safari only meant for macOS Pixer and Catalina, and it fixes the WebKit vulnerability that was fixed in Monterey yesterday.

2:13.4

Now, no work on whether the second vulnerability, which was a kernel issue, also affects

2:18.8

these older operating systems.

2:20.4

Maybe we'll get additional updates for that later.

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.