4.9 • 696 Ratings
🗓️ 4 August 2017
⏱️ 6 minutes
🧾️ Download transcript
Click on a timestamp to play from that location
0:00.0 | Hello, welcome to the Friday, August 4th, 2017 edition of the San Internet Storm Center's Stormcast. |
0:07.0 | My name is Johannes Ulrich, and the I'm recording from Jacksonville, Florida. |
0:11.7 | If you're interested in a little site project to help us out here at the Internet Storm Center, |
0:17.3 | I posted about our Raspberry Pi Honeypot. |
0:23.2 | So if you have a spare Raspberry Pi sitting in a corner, you may install our software in order to contribute to our data collection |
0:30.7 | effort. Really important, particularly to get, for example, home users online. It's not really a matter |
0:37.4 | of how important your network is. |
0:39.9 | Actually, what we're looking for is sort of average networks. And by using the Raspberry Pi platform, |
0:47.5 | I think we made it reasonably easy to set this up for yourself. So take a look at the diary. It has more instructions and links to the |
0:58.0 | GitHub repository with the code. And Troy Hunt added an additional service to his website, |
1:05.4 | Have I Been Poned? Now this website has been collecting preach data for quite a while now, and you were able |
1:12.7 | to enter your email address and we're able to figure out whether or not your email address |
1:18.2 | has been shown up in any preaches. |
1:20.9 | Now, if lately commented on this, that this isn't really all that useful because pretty |
1:26.2 | much all email addresses have shown up |
1:29.2 | in breaches at some point. So if your email address is displayed, you don't really know what |
1:36.2 | password went with this particular breach in particular, since the site typically doesn't show you |
1:41.7 | what breach your email address was involved in. |
1:45.0 | Well, Troy Hunt now offered a new service for Have I Been Powned and that's a collection of |
1:53.1 | passwords. It's somewhere in the around 300 million passwords that Troy has accumulated via various online resources. Now, you don't get the |
2:05.0 | email address going with the password, of course, but you can just download all these 300 million |
2:10.9 | passwords or there are APIs and various other queries that you can use to check if a certain |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2025.