meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Friday, January 11th 2019

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News

4.9754 Ratings

🗓️ 11 January 2019

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. I Love You Again; Juniper got Love for you; Systemd doesn't love you; Iran Love DNS;

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Friday, January 11th, 2019 edition of the Sand Center Storm Center's Stormcast.

0:07.3

My name is Johannes Ulrich, and I'm recording from Jacksonville, Florida.

0:13.3

It was just when I sort of got started in security around May 2000 that the I Love You Warm went around spreading emails with the subject

0:24.5

line of I Love You.

0:25.9

Well, old tricks never die.

0:29.1

We have a diary today from Brad talking about how actually pretty much sort of identical

0:36.6

almost emails are being used today to spread

0:40.3

the latest crypto coin miners and ransomware. The subject lines are sort of love letter related.

0:48.3

The extensions actually just like the old extensions back then in May of 2000s are using sort of double extensions like

0:56.2

dot Txt or dash txt dot SIP in this case back in the old days it was more straightforward

1:03.1

dot VBS well and the SIP file then of course includes a script just like what the old I Love

1:10.5

You virus back in 2000 included and

1:14.4

that then will install additional malware.

1:18.0

So really almost the only difference between the 2000 version and this version is that the

1:23.6

attachment is compressed and well it's now installing different malware.

1:30.3

In talking about old vulnerabilities that are not going away, Juniper today released two sets of patches.

1:38.3

The first one affects June OS and fixes eight different vulnerabilities. Two of these vulnerabilities have a CVSS

1:47.0

score of 9.8. Both affect lip XML 2. And the first one is again sort of a classic. It's a

1:55.0

format string vulnerability. Second one is somewhat more modern in that it is a remote entity insertion.

2:04.0

Now, the second set fixes 13 vulnerabilities in Juniper's advanced threat protection,

2:10.2

and it's so advanced, it includes two hard-coded credential vulnerabilities,

2:14.8

both with a CVSS score of 10 that allow the attacker to fully control

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.