meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Friday, June 15th 2018

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

News, Tech News

4.9754 Ratings

🗓️ 15 June 2018

⏱️ 12 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. A WordPress Compromise; Not-So-Smart Padlock;

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Friday, June 15th, 2018 edition of the Santernet Storm Center's Stormcast.

0:07.0

My name is Johannes Ulrich and the time recording from Jacksonville, Florida.

0:12.0

Xavier today took a look at a compromised WordPress site.

0:17.0

This is a site that a reader gave us access to after it was compromised.

0:21.6

Looks like the adhack actually took advantage of the WordPress XMLRPC interface and most likely prudeforced password.

0:31.6

Once compromised, the attacker essentially turned the WordPress site into a spam site in particular to target

0:40.3

Japanese search engines in this particular case. There was also a web shell left behind in order

0:48.3

to provide the attacker with future access. In addition to the attacker also installed a malicious plugin that gave the attacker remote access

0:59.4

to the system.

1:01.3

WordPress remains the top target as far as web applications go.

1:06.6

A lot of the attacks that I'm seeing are really just trying to prude for passwords,

1:12.6

not necessarily so much going for vulnerabilities.

1:16.4

I've also seen a couple cases where they're looking for some of these back doors that

1:23.4

other attackers may have installed in the past. And if you have been looking at crowdfunding sites recently, you probably saw some of these

1:33.3

smart padlocks being advertised.

1:36.3

These locks promise to be more secure than some of their mechanical counterparts, and they also

1:42.8

offer the convenience of being opened via an app.

1:47.0

Typically the price of these locks is around $100 so that's in line with some of the high-end

1:53.2

mechanical locks.

1:55.4

Some of the initial attacks against these locks focused on essentially poor mechanical construction. This one particular

2:03.3

lock was very easily broken by essentially just twisting off the back cover. Now this

2:10.4

vulnerability apparently has been fixed now with a spring-loaded pin that

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.