meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Friday, October 23rd 2020

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

News, Tech News

4.9754 Ratings

🗓️ 23 October 2020

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. BazarLoader Samples; Secure Boot Reviews Stalled; Cisco Advisories

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Friday, October 23rd, 2020 edition of the Sansonet Storm Center's

0:06.8

Stormcast. My name is Johannes Ulrich, and I'm recording from Jacksonville, Florida.

0:14.5

Jan today took a look at a sample of Bazaar-Lauder Malspam. These emails have a pretty

0:22.4

wide variety of topics

0:24.7

they're trying to use

0:25.7

to trick the user

0:27.6

into clicking on the link

0:29.9

in these emails.

0:31.0

He had, for example,

0:32.6

Halloween parties,

0:34.0

he had bonuses

0:35.3

and, well,

0:36.3

some where you were actually fired.

0:40.1

And all of these emails arrived to the same account in actually a fairly short sequence.

0:46.1

But what's kind of interesting is also the variety of different cloud providers that were

0:52.3

used to store the malicious links and ultimately

0:57.2

the documents. At the top of the list, Google Docs and Google Docs remains very popular with

1:03.8

malware distributors and fishing sites to redirect users then to the ultimate malicious documents.

1:11.6

Google had talked about this before,

1:13.6

appears to have a hard time countering some of this abuse of its services.

1:19.6

But there was also a new entry here that I haven't seen yet,

1:24.6

and that was a link to a Slack. Now as Jan investigated this particular link, it was no longer available, but looks like they essentially

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.