ISC StormCast for Monday, October 10th, 2022
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 10 October 2022
⏱️ 6 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello, welcome to the Monday, October 10, 2020 edition of the Sandcent Storm Center's Stormcast. |
| 0:08.4 | My name is Johannes Ulrich, and today I'm recording from Riyadh, Saudi Arabia. |
| 0:16.7 | FortyNet advised its customers late last week of a vulnerability in its 40 Net 40 OS and 40 proxy products. |
| 0:25.6 | This is significant as this is an irregular update not following 40 Net's usual patch dates. |
| 0:34.6 | Now, 40Net, as far as I know, did not provide a reason for the scheduling of this update, |
| 0:40.9 | so whether or not it's already exploited or so. |
| 0:43.4 | We don't really know a lot of it was really only release the two customers directly and not made public. |
| 0:52.1 | I'm not aware of a public exploit at this point. |
| 0:56.2 | It's an authentication bypass that we're dealing with here |
| 0:59.4 | that would give an attacker administrative access |
| 1:02.7 | to the admin interface of the device. |
| 1:07.8 | Software update has been made available, |
| 1:10.2 | and customers definitely should apply the update soon. |
| 1:15.0 | In the advisory that is only accessible to customers directly, there are also some mitigation |
| 1:22.6 | techniques that you may want to apply. And as usual, of course, the administrative interface should not be accessible publicly. |
| 1:31.7 | But, well, you probably already do that if you listen to this podcast for a while. |
| 1:39.9 | And then we got an exploits, or a newish exploit, I should call it, for Simpra that's apparently |
| 1:45.7 | already being exploited in the wild. Simpra is an open source, a webmail system. Now, |
| 1:53.7 | the vulnerability here is really an older vulnerability, CVE 2015-1194. |
| 2:02.0 | And as a CVEE number implies, well, it came out in 2015, was patched in 2015. |
| 2:09.3 | The tricky part here is it's not really a CIMPRA vulnerability that we're talking about. |
| 2:14.3 | Simpra is just a vector how the vulnerability is being exploited. The vulnerability |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

