4.9 • 696 Ratings
🗓️ 6 October 2023
⏱️ 5 minutes
🧾️ Download transcript
Click on a timestamp to play from that location
0:00.0 | Hello and welcome to the Friday, October 6, 2003 edition of the Sanford Storms on Stormcast. |
0:08.0 | My name is Johannes Ulrich. |
0:09.6 | And today I'm recording from Jacksonville, Florida. |
0:14.1 | Recently, DDA published a brief diary showing how to decode some little Indian IP addresses that are stored in Windows |
0:23.8 | event logs. |
0:25.4 | Well, it turns out it's not just Windows doing it this way. |
0:28.5 | Also, good old Unix or Linux is doing it in the slash Brock file system. |
0:34.6 | Jim now wrote a quick Python script that will allow you to decode these entries, |
0:40.2 | both in IPV6 as well as IPV4. Of course, quite a bit simpler in IPV6 because IP address |
0:48.0 | are hex anyway, so the translation is really just sort of shoveling bytes around for IPV4. Of course, it will do not just |
0:57.6 | the flipping off the bytes, but will also decode from hexadecimal to the dotted decimal system. |
1:08.2 | And Cisco fixed a critical vulnerability in its emergency responder product. This is typically |
1:15.5 | used to run 911 call centers and alike. And yes, it suffers from what Cisco calls static |
1:23.5 | credentials used for development, but others may refer to this as a backdoor. If it hasn't happened |
1:30.5 | already, it's probably just a matter of time for the root credentials in this case to be posted |
1:36.7 | publicly somewhere. Haven't seen it myself yet, but haven't really been looking, so please patch. |
1:45.4 | And as expected, we do have proof-of-concert exploits now for CVEE 2023, 4911. |
1:53.5 | That's the Perlige Escalation War on abilities that was made public earlier this week, |
1:58.9 | or also referred to as loony tunables. |
2:02.0 | I'll link to one of the exploits that I think is legit. |
2:06.4 | Haven't really tested it myself yet. |
2:08.8 | But keep in mind that, yes, there are multiple valid exploits that have been released. |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2025.