meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Friday, August 24th 2018

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News, Technology

4.9696 Ratings

🗓️ 23 August 2018

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. Formcrafts Phishing;

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Friday, August 24th, 2018 edition of the Sansonet Storm Center's Stormcast.

0:07.2

My name is Johannes Ulrich, and the time recording from Stockholm, Germany.

0:12.7

Sometimes fishing really doesn't take a lot of work or resources, and Xavier came across a number of fishing scams actually that took advantage of

0:23.1

Formcrafts.com. Formcrafts.com is not a malicious site. It allows you to set up simple forms

0:31.3

that users submit and then it collects the data from it. And they even have a simple plan

0:37.0

for small forms with a few submissions and this

0:41.6

is exactly what fissures take advantage of so they cannot change the domain name here they have to

0:47.5

use formcrafts.com but then of course the page name they can try and find one that looks good to the victim.

0:56.7

And Xavier was poking a little bit around there.

0:59.4

And for example, found pages like Webit, IT helpdesk, IT support,

1:05.2

which served up login forums, collecting users, credentials, and other information in some cases.

1:13.3

I mentioned before that not all VPN applications are created equal. Some of them just don't work.

1:21.8

Others do not encrypt your traffic. And then there's always the risk that the endpoint of the VPN connection could

1:30.2

intercept and could inspect any traffic that you're passing through this VPN.

1:36.1

A special mention here deserves Onnavo.

1:39.2

Onavo is a product that Facebook purchased a few years back and it was often advertised as Facebook

1:46.8

Protect. Now on first site it's well yet another one of these VPN applications and of

1:52.3

course Facebook is in charge of the endpoints. But the risk here is not just that Facebook

1:59.3

is able to inspect all traffic that you're sending via the VPN,

2:04.6

even if it's not going to Facebook itself.

2:08.6

In addition, it will send a number of other data items to Facebook, like for example, Wi-Fi data usage.

2:23.6

Also, if you don't have the application turned on, so you are running the application, but you're not actually using the VPN, it will still report back any sites you're visiting back to Facebook

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2025.