4.9 • 696 Ratings
🗓️ 6 July 2017
⏱️ 6 minutes
🧾️ Download transcript
Click on a timestamp to play from that location
0:00.0 | Hello, welcome to the Friday, July 7th, 2017 edition of the Sandtonet Storm Center's Stormcast. |
0:07.3 | My name is Johannes Ulrich, and the day I'm recording from Prague, Czech Republic. |
0:12.3 | A couple of interesting diaries to start out with. |
0:14.6 | First one by DDA, of course, yet another Python script by DDA, |
0:19.6 | and this time about finding interesting domain names. |
0:23.5 | We had this in the past. |
0:25.3 | His is a little bit of different approach. |
0:27.1 | We actually train the script to tell it what normal words look like and it then looks |
0:33.5 | for abnormal one, which of course come out to be more random domain names. |
0:40.3 | Mark Baggett has a similar script looking at it from an entropy point of view. |
0:45.2 | What's sort of different with the idea that you actually can train it with different dictionaries |
0:49.7 | so you can make it somewhat language-specific? |
0:54.0 | And then we got the second guest diary by Ali DeCantana |
0:58.0 | this time, again about BitTorrent Sync version 2, |
1:03.0 | but from a log file perspective, |
1:06.0 | so what you can find about this particular tool |
1:09.0 | from the log files, it leaves on a system. |
1:13.4 | And to keep this week interesting, we got a couple of updates from Cisco. Cisco patches, |
1:19.6 | first of all, vulnerability in the elastic services controller. Apparently there were some |
1:26.7 | static login details that were shipped with this |
1:31.8 | product that have to be removed and that's done with this latest update. And the auto IT service |
1:40.2 | apparently allows the execution of shell commands as route without authentication. That has |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2025.