ISC StormCast for Friday, February 4th, 2022
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 4 February 2022
⏱️ 5 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello, welcome to the Friday, February 4, 2020 edition of the Sands and the Storm Center's Stormcast. |
| 0:07.5 | My name is Johannes Ulrich, and today I'm recording from Jacksonville, Florida. |
| 0:12.8 | One issue that keeps coming up is exposed devices, whether this is cameras with weak telnet passwords or network storage devices or lately things like, |
| 0:25.4 | for example, your integrated lights out adapters. |
| 0:28.6 | But one question always comes up with this is how do I make sure that I'm not exposing |
| 0:34.7 | anything like this to the internet? |
| 0:37.0 | Essentially, how do I manage my attack |
| 0:39.6 | surface, how this is often described. Put together a quick blog today with some tools that |
| 0:46.7 | I like that I found helpful in order to get a hold of this particular problem, particular for |
| 0:53.6 | smaller organizations. Now, one little sub-problem |
| 0:57.6 | here is, of course, how do you deal with people working from home and their networks? |
| 1:03.0 | It would be interesting to hear what people are doing if you're sort of including, for example, |
| 1:07.8 | home networks in vulnerability scans, |
| 1:11.4 | or if you're more relying on securing the devices directly. |
| 1:16.9 | Let me have a couple of news items regarding multifactor authentication. |
| 1:21.9 | And first of all, Microsoft published its new quality cyber signals reports, |
| 1:28.3 | and according to that, |
| 1:34.9 | well, sadly, only about a fifth or 22% of Asia Active Directory users are taking advantage of multi-factor authentication, but multifactoredication does remain a very effective |
| 1:43.0 | measure to prevent attacks against these types of accounts. |
| 1:49.3 | Microsoft is seeing hundreds of password attacks per second, of course, no big surprise, |
| 1:54.8 | giving the scale of Microsoft's operation. |
| 1:59.1 | Also, Octa is reporting that they're seeing about 10 times more attacks |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

