meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Friday, November 13th 2020

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

News, Tech News

4.9754 Ratings

🗓️ 13 November 2020

⏱️ 14 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. Exposed Azure Blobs; MacOS Security Updates; DNS Cache Poisoning Again; Poisoned Postman @sans_edu

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Friday, November 13th, 2020 edition of the Sand Center at Stombsonters Stormcast.

0:07.5

My name is Johannes Ulrich, and today I'm recording from Jacksonville, Florida.

0:13.3

Over the last few years, you've probably heard a lot about exposed Amazon S3 buckets.

0:19.7

Well, Amazon has taken some measures to make a little bit more difficult

0:24.6

to expose your data this way. But of course, other cloud providers have similar features.

0:31.4

And Microsoft Azure calls this plop storage. Daniel has talked about this before and how it's as easy, maybe easier than

0:41.7

with S3 to expose your blob storage. Well, as Daniel points out in a follow-up diary, this has changed

0:51.5

now and Microsoft has added an option to simply disable public

0:57.5

blob access.

0:59.3

So if you're using this feature with Microsoft, take a look at Danielle's diary.

1:04.9

He's also going over some of the additional access control details and what kind of log messages to expect.

1:15.4

Today, of course, was a big day for Apple with the release of MacOS 11 Bigser, but with an update,

1:24.5

we also got a couple of security fixes.

1:28.3

First one for the brand new operating system.

1:31.3

MacOSPixir 11.0.1, that's the exact version that you should be running at this point, does fix a number of security vulnerabilities that apparently didn't sort of make it into the final 11.0 release.

1:47.7

At the same time, we also got updates for macOS high Sierra and macOS Mojave.

1:54.2

That's essentially the update that we had for Catalina, the most recent operating system, about a week ago.

2:03.2

A bit surprising is the size of the macOS Bixer 11.0.1 update.

2:09.1

It fixes about 55, if I counted correctly, different vulnerabilities.

2:16.0

A bunch of open source components are being updated.

2:18.3

That's a little bit of typical thing for Apple, of course, in it,

2:22.3

including a lot of open source components with its operating system.

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.