meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Monday, April 22nd, 2024

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

News, Tech News

4.9754 Ratings

🗓️ 22 April 2024

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. CVE Changes; CrushFTP 0-Day; GitHub Comment Bug; YubiKey Manager Bug; PAN GlobalProtect Update

Transcript

Click on a timestamp to play from that location

0:00.0

Hello and welcome to the Monday, April 22nd, 2004 edition of the Sansonet Storm Center's

0:06.9

Stormcast. My name is Johannes Ulrich and I'm recording from Jacksonville, Florida.

0:14.0

And we got more changes to CBEs and how vulnerabilities will be communicated.

0:21.4

Meider, the company who is in charge of assigning CVE numbers, so far used the CVE

0:28.3

JSON 4.0 format.

0:30.9

Well, they now started releasing vulnerability information in the JSON 5.0 format and JSON 4.0 will go away end of June.

0:42.9

So you don't have a lot of time here to react and switch over to the new feed.

0:48.9

Not sure how sort of backwards compatible it is. I still have to look into it myself, but definitely something

0:55.4

that you need to get ready for if you are consuming these feeds directly. This may of course

1:00.4

also affect various open source and commercial products that are reading this feed directly

1:06.7

from MITR. And then you have more vulnerabilities in Enterprise File Transfer Software.

1:13.5

Remember all the chaos that moved it cost a few months back.

1:17.5

This time it's Crush FTP.

1:20.5

Crush FTP version 11 below 11.1.

1:25.0

Have a vulnerability that can be used to escape their VFS and download system files.

1:33.0

So this has been patched in version 11.1.0. And in particular, if you are exposing Crush FTP to the public, you should patch now as CrowdStrike states that

1:47.7

this vulnerability has already been exploited. There are also patches available for version 10

1:54.6

of Crush FTP and version 9, according to Crush FTP, is no longer supported.

2:02.2

So no one should be running it anymore, according to them.

2:06.8

And we have an interesting vulnerability or maybe, well, an easy-to-abuse feature in

2:12.1

GitHub that is being abused in order to distribute malware.

2:16.5

One of the problem with repositories like GitHub is

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.