meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Friday, October 19th 2018

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News, Technology

4.9696 Ratings

🗓️ 19 October 2018

⏱️ 4 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. Cisco Patches; 51% Crypto Currency Attack; VMWare Patch;

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Friday, October 19th, 2018 edition of the Sandcent Storm Center's Stormcast. My name is Johannes Ulrich, and today I'm recording from McLean, Virginia.

0:13.3

Cisco today released patches for 15 different vulnerabilities with a heavy focus on wireless. Most of these vulnerabilities affect the

0:23.1

Cisco wireless land controller and what's being fixed there are a number of

0:28.4

web application vulnerabilities. Nothing super critical here. There are some

0:33.7

directory traversal vulnerabilities and information disclosure vulnerabilities that may be used

0:39.6

to actually take advantage of other vulnerabilities that have been discovered in the past. Also,

0:47.1

there are a number of denial-of-service vulnerabilities that are being addressed, for example,

0:52.3

against some of the Cisco access points.

0:56.1

I don't see anything here that would warrant super fast patching, so just apply your standard

1:02.3

patch procedure to these updates.

1:06.6

With all the attention that cryptocurrencies have received in the last couple years,

1:12.5

we of course also had about a year ago,

1:15.3

so a big rush into new cryptocoins that were being released.

1:20.9

Problem here, of course, is that many of these cryptocoins really never caught on,

1:25.6

never really got a following, which does allow now for some 51%

1:32.1

attacks against these crypto coins with rather limited means. A 51% attack refers to an attack

1:40.6

where a single entity does actually get a hold of more than 50% of the total mining capacity for a particular coin,

1:50.2

and with that, this particular miner can then take control of that coin's blockchain.

1:57.4

An individual who goes by the name of GeoCold did launch such an attack now against Bitcoin Private.

2:04.9

Not to be confused with the mainstream Bitcoin, but instead Bitcoin Private is sort of a fork of the entire Bitcoin idea.

2:13.5

Initially, GeoCold planned to live stream the attack.

2:17.1

That didn't work out because multiple live streaming platforms banned him.

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2025.