ISC StormCast for Friday, May 3rd, 2024
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 3 May 2024
⏱️ 6 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello and welcome to the Friday, May 3rd, 2024 edition of the Sansonet Storm Center's Stormcast. |
| 0:07.9 | My name is Johannes Ulrich, and I'm recording from Jacksonville, Florida. |
| 0:13.4 | When teaching web application security, one of the things that often comes up is simple authentication bypasses, |
| 0:19.8 | and I do mention things like a stupid cookie |
| 0:23.0 | that says user equals admin. |
| 0:25.4 | You would think this wouldn't work, but well, that's exactly what I was writing about today. |
| 0:32.0 | It used exactly this type of vulnerability. |
| 0:35.1 | A cookie user equals admin. |
| 0:37.8 | In addition, the vulnerability that is likely being exploited here uses a command injection |
| 0:44.6 | vulnerability where when you're trying to change your password, it will also inject commands |
| 0:50.3 | for you. |
| 0:51.5 | Just to clarify, LBLink, don't confuse it with T-P-L-B-L-B-L-L-B-L-L-L-B-LK is |
| 0:57.9 | a Chinese OEM, as far as I can tell. Their routers may be sold under various |
| 1:04.6 | trademarks. WINGA-R-A-C-1200. Apparently, same vulnerability, so likely same manufacturer and same firmware. |
| 1:16.0 | One problem with sort of these routers that are sold under different trade names is that it can be |
| 1:23.2 | difficult to figure out where to actually get firmware for these devices before you buy any kind of |
| 1:30.2 | device like this. Always try to find a manufacturer's website. Check out if firmware is easily |
| 1:36.9 | available from the website. And while you're there, also check if they have any kind of end-of-life |
| 1:42.9 | policy to make sure you're not |
| 1:44.8 | buying a device that will no longer receive any updates. |
| 1:50.2 | And talking about routers and related devices, we do have an update for Aruba OS, that's part of |
| 1:58.6 | HP Enterprise. |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

