4.9 • 696 Ratings
🗓️ 13 July 2018
⏱️ 6 minutes
🧾️ Download transcript
Click on a timestamp to play from that location
0:00.0 | Hello, welcome to the Friday, July 13th, 2018 edition of the Sandsenet Storm Center's Stormcast. My name is Johannes Ulrich. And today I'm recording from Jacksonville, Florida. |
0:12.9 | We've got a new variation of these extortion scams. Now, the way they usually work is that you will receive an email claiming that someone has |
0:23.2 | a video of you watching pornographic movies. |
0:27.8 | Now, then they expect you to pay them in Bitcoin in order to not release this material |
0:34.4 | to your friends. |
0:36.1 | What has changed today is that these emails also include |
0:39.6 | a username and a password of yours. Now, these are authentic username password pairs, |
0:45.3 | likely retrieved from one of the many password dumps that have been released over the last |
0:51.9 | month and years. |
0:57.5 | So this is supposed to make the email more plausible. |
1:01.9 | Haven't really figured out if any victims have paid yet. |
1:07.0 | It looks like all of these emails use different Bitcoin addresses. |
1:09.8 | Brian Krebs today also report about it. |
1:14.3 | His email looks exactly like the one that we received, |
1:22.2 | but with a different Bitcoin address. And then you have yet another problem with NPM modules getting a compromise. This time it's a part of the ESLint module. |
1:28.3 | ESLint is mostly used by developers in order to check JavaScript code for bugs. |
1:36.3 | But that's really who was targeted here. |
1:39.3 | Apparently one developer's credentials were compromised for ESLint. |
1:45.3 | These credentials were then used to push an update out that included additional code |
1:51.3 | that stole NPM credentials. |
1:54.6 | So developers that used this code were at risk of having their credentials stolen. |
2:00.5 | Now, unlike with some of having their credentials stolen. |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2025.