meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Monday, October 16th, 2023

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

News, Tech News

4.9754 Ratings

🗓️ 16 October 2023

⏱️ 5 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. Odd MAC Addresses; Domains as Passwords; PoC for WebKit Vuln; AvosLocker; Darkgate

Transcript

Click on a timestamp to play from that location

0:00.0

Hello and welcome to the Monday, October 16, 2020,

0:04.5

edition of the Sandcent Storm Center's Stormcast.

0:08.7

My name is Johannes Ulrich, and then I'm recording from Jacksonville, Florida.

0:14.3

I wrote a quick diary last Friday, just talking a little bit about, again, sort of what's normal,

0:20.1

a little serious that I started recently.

0:23.0

And in this particular case, well, what's normal with Mac addresses?

0:28.0

There are a couple sort of odd things that you see with Mac addresses, once in a while,

0:32.8

like one IP address with multiple Mac addresses, or then also some, well, sort of temporary Mac addresses

0:41.7

that are not permanently assigned that sort of don't show up in standard databases.

0:46.7

Talked a little bit about this in this diary.

0:49.2

If there is anything that I missed in that respect, please let me know.

0:55.5

And then we have a little bit of mystery that Guy observed in his honeypot logs, that

1:02.1

the mysteries around passwords being used.

1:04.3

Now, we all know the standard top passwords, like no password, one to three, four, five,

1:08.7

and the like.

1:09.5

Well, one interesting thing that

1:11.5

Gio observed was passwords that included domain names. Now, not always sort of correct, like in

1:18.8

the form of an email address or such, like, for example, one, two, three, at, and then dot com. So,

1:24.8

not really a domain name like that. Not all of the domains that were used are resolvable,

1:30.7

but some of them are resolvable.

1:33.9

So just wondering if this is like a common sort of default password pattern for some,

1:39.0

it could be, and we have seen this sometimes,

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.