meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Friday, January 14th, 2022

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News, Technology

4.9696 Ratings

🗓️ 14 January 2022

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. MSFT Patch Issues; Jenkins Advisory; Qakbot Decryptor; Android 2G Disable; MSFT Defender Weakness

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Friday, January 14th, 2020 edition of the Sansonet Storms anders Stormcast.

0:08.5

My name is Johannes Ulrich.

0:10.2

And I'm recording from Jacksonville, Florida.

0:14.2

Well, no news is good news when it comes to the HTTP.SSys vulnerability CVE 2020, 21907.

0:25.6

Shortly after recording yesterday's podcast, someone on Twitter pointed to a well

0:31.9

supposed exploit for the vulnerability on GitHub, but all that's there is what claims to be an encrypted version of

0:39.7

the exploit. Yes, a video demo, but of course that doesn't really tell you if there's anything

0:45.4

real here. So at this point, nothing publicly available and this one particular exploit, I would not really take all that serious at this point.

0:57.8

Sadly, there are some issues with this latest set of updates, in particular with Windows 8.1

1:04.9

and Server 202012R2, and Microsoft now confirmed these problems. The symptom here is a boot loop. One of our

1:14.6

readers actually described as a slow boot loop because it takes a while for the reboot then to happen.

1:21.3

And according to Microsoft, there are issues with virtual machines in HyperV if the device

1:26.6

you're running them on is using UEFI.

1:30.2

Also some issues around the Windows Resilient File System or REFS, where volumes are no longer

1:37.6

accessible or are seen as unformatted after you install the updates.

1:43.6

Now, sadly, the only fix here, of course, is to uninstall

1:46.8

the update, and this does affect the cumulative updates, so this will basically remove all

1:52.8

the patches that were released, including the HTTP.syspatch. Well, once you're done patching Windows, there's also a security advisory for Jenkins that you

2:04.6

should pay attention to if you are using Jenkins for your DevOps pipeline.

2:10.8

If I counted right, it's about 22 different security issues that are being addressed with

2:16.7

this update, but some of these updates

2:19.0

only affect specific plugins or features within Jenkins, so they may not necessarily affect

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2025.