meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Monday, May 18th 2020

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News, Technology

4.9696 Ratings

🗓️ 18 May 2020

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. OWA Scans; Edison Email Mixup; COMpfun Udpate; PAN OS Patches

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Monday, May 18th, 2020 edition of the Santernut Storm Center's Stormcast.

0:07.5

My name is Johannes Ulrich, and the time recording from Jacksonville, Florida.

0:13.4

Guy this weekend looked at hits to his honeypot and found a good number of attempts to find

0:20.7

Outlook Web Access admin pages.

0:23.8

Aside from trying to exploit any vulnerability,

0:26.8

the most likely thing that the attacker is going to do here is credential stuffing,

0:31.7

where they will try usernames and passwords that they found before against this admin page.

0:38.5

If successful, they're sort of too common routes and attacker would go.

0:44.1

First of all, sending spam using your mail server.

0:47.8

That's, of course, always attractive.

0:50.2

But more severely, they may try to launch a business email compromise where they're injecting

0:59.0

themselves into conversations to either simply steal money or to further compromise the organization

1:05.9

by sending email from trusted accounts.

1:09.3

What was also interesting in this particular case was that many of the hits came from an

1:16.4

organization that identifies itself as strechoid.com.

1:20.2

You can add yourself to their block list where they will not scan you, but really not much

1:26.1

known about who is actually behind this or who is running

1:30.0

these scans. They sort of try to claim that they are researchers and not really going to do

1:36.1

any harm, but really hard to tell without knowing who's actually behind them. And sticking with

1:43.3

email for the next story, Edison is a somewhat popular email client in

1:49.7

the Apple world, so for MacOS and iOS. And late last week, Edison released a new update

1:57.4

that allowed synchronization of email content across different devices.

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2025.