ISC StormCast for Friday, March 27th 2020
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 27 March 2020
⏱️ 6 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello, welcome to the Friday, March 27, 2020 edition of the Sansonet Storm Center's Stormcast. |
| 0:07.8 | My name is Johannes Ulrich. |
| 0:09.4 | And today I'm recording from Jacksonville, Florida. |
| 0:13.4 | Xavier came across some malware that turned out to be exceptionally large with 320 megabytes. |
| 0:20.5 | And, well, he took a look to figure out what's exactly going on here in this |
| 0:27.1 | matter and where all the data really came from. So when he loaded it into PE Studio, which sort of |
| 0:33.9 | outlines the structure of the file, he found a normal size text and data part, but the resource part was where all that bulk came |
| 0:45.6 | from. |
| 0:46.4 | Turned out all that data was really sort of three different images that looked like they |
| 0:52.1 | were sort of scribbled by hand. |
| 0:56.0 | Not hard and clear what is about, but likely just to obfuscate the binary. A lot of antivirus tools may not |
| 1:04.0 | scan a file if it exceeds a certain size, and that may be the goal here. |
| 1:11.6 | And looks like the update to iOS that was just released is introducing a problem with how |
| 1:19.6 | VPNs are established with iOS. |
| 1:23.6 | Typically whenever you enable a VPN connection, existing connections should be stopped |
| 1:29.6 | and then reestablished over the VPN. |
| 1:33.1 | That apparently isn't happening with this latest version |
| 1:36.5 | of iOS, connections that you had established |
| 1:40.0 | before you actually set up the VPN will remain unencrypted. |
| 1:45.3 | VPN provider Proton VPN came up with this finding, |
| 1:49.8 | and what they are recommending is that before enabling VPN, |
| 1:54.1 | just turn the phone into airplane mode, |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

