meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Friday, June 1st 2018

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

News, Tech News

4.9754 Ratings

🗓️ 1 June 2018

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. Safely Resetting Routers (#VPNFilter); CSS3 Mix-Blend-Mode Leak; Apple iMessage Security

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Friday, June 1st, 2018 edition of the Sandsenet Storm Center's Stormcast.

0:07.0

My name is Johannes Ulrich and today I am recording from Jacksonville, Florida.

0:12.0

Recently you probably heard about all the advice that was given to reboot your home router.

0:18.0

I talked about the underlying threat VPN filter before, but I want to spend a couple

0:25.6

seconds here talking about rebooting your router.

0:29.8

Now, rebooting your router is probably going to get rid of most malware that typically

0:36.4

infects routers, but it doesn't undo any configuration

0:41.0

changes that were made. Moreover, with VPN filter, VPN filter is in so far special in that

0:49.1

it actually modifies your firmware. So a simple reboot isn't really going to fix it.

0:55.5

Now what you also should do if you are concerned of more advanced firmware is you should do a firmware upgrade and you should reset the router to factory default conditions.

1:09.0

The problem with the second step is that factory default often means,

1:13.1

well, a weak password, so make sure you change that as soon as possible. And today I published

1:20.8

a quick diary with a little bit more details and some basic step to keep you secure during this process.

1:28.3

And I've got an interesting vulnerability in the way some browsers are implementing a new

1:34.3

cascading style sheet feature, mix blend mode. What this refers to is that via style sheets,

1:41.3

you're able to overlay different layers and then blend them with each

1:46.0

other. Well apparently the time it takes to actually render the result depends on the

1:51.5

content of the lowest layer because the browser after all has to calculate how

1:57.5

that particular layer should appear after it is being blended with all the other layers.

2:02.6

The researchers came up with a pretty neat demo that attempts to read your name from Facebook,

2:09.6

so essentially it tries to de-anonymize you.

2:12.6

The way this works is that it loads your name from Facebook into an eye frame and then overlays this

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.