meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Monday, April 18th, 2022

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News, Technology

4.9696 Ratings

🗓️ 18 April 2022

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. Office and ISOs; Heroku/Travis CI GitHub OAuth Leak; Git Windows Bug; Cisco Wireless Controller Vuln;

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Monday, April 18th, 2020 edition of the Sansonet Storm Center's Stormcast.

0:08.0

My name is Johannes Ulrich.

0:10.0

And I'm recording from Marietta, Florida.

0:14.0

This weekend, DDA took a closer look at how newer versions of Microsoft Office are dealing with files inside of ISOs.

0:25.2

Now, isophiles are treated pretty much like a physical CD or DVD.

0:30.2

You may mount it as a drive.

0:33.5

And then, of course, in the past, the problem was if you downloaded this ISO file from the

0:37.9

internet. Whenever you download a file from the internet, an alternative data stream is added

0:42.9

in Windows that contains what's often referred to as the mark of the web and that tells software

0:50.1

like Microsoft Office that this particular file should be treated with caution.

0:55.9

Now, the problem in the past was, is that the ISO file, it may contain this mark of the web,

1:01.4

but any files inside the ISO did not contain the mark.

1:06.6

Well, that behavior now luckily has changed.

1:09.9

DDA took a look at it, and it does appear that if you are now opening a document from inside

1:18.3

an ISO file that you downloaded from the internet, all the restrictions are applied

1:24.5

that would be applied if this particular file would have been downloaded

1:28.5

directly and not inside an ISO.

1:31.3

Now, on Twitter there were actually some interesting comments about this when it comes to SIP

1:35.5

files.

1:36.0

Similar problem with SIP files, you download the SIP file.

1:39.0

The SIP file now has the mark of the web, but if you're extracting files from the zip file, they may not.

1:46.8

And it depends apparently on the software that you're using to do the extraction.

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2025.