ISC StormCast for Monday, December 23rd 2019
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 23 December 2019
⏱️ 5 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello, welcome to the Monday, December 23rd, 2019 edition of the Sandstone Storm Center's Stormcast. |
| 0:07.8 | My name is Johannes Ulrich. |
| 0:09.3 | And I'm recording from Jacksonville, Florida. |
| 0:13.6 | Did he wrote a follow-up to an article that he published last week with Visual Basic for Application macros in AutoCat files. |
| 0:23.3 | Now these dot DWG files are OLE files, so some of his OLE tools like OLE dump work just |
| 0:32.3 | great for these files and he walks you through the process of extracting these macros. |
| 0:40.3 | And Cisco dropped a rather important field notice late last week, noting that if you are using |
| 0:49.3 | PKI self-signed certificates, well, they will be expiring with the end of the year. |
| 0:56.1 | Turns out in Cisco iOS and Cisco iOS XE, if you're using this feature where you are |
| 1:02.3 | creating self-signed certificates, for example, for HTTP or for S-SH remote access to the device, |
| 1:10.3 | the expiration date is always set to January 1st, 2020, which is just about a week or so away, |
| 1:19.9 | so you certainly need to address that. |
| 1:22.9 | Now, there is a software update available for this problem, but applying the software update is not |
| 1:29.8 | sufficient. |
| 1:30.9 | You also have to create new certificates because otherwise you still run this problem where |
| 1:36.8 | certificates will expire next week. |
| 1:39.5 | Of course, you can also create certificates using your own certificate authority, for example. |
| 1:45.9 | That's probably preferred anyway than just going with self-signed certificates within the |
| 1:52.5 | Cisco iOS operating system. |
| 1:55.5 | But be aware. |
| 1:56.9 | So if you're not able to log in on January 1st, the possible problem is that your certificates expired. |
| 2:04.9 | And then it may get really tricky to actually get them updated because you no longer have remote access to that particular device. |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

