meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Monday, October 30th, 2023

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News

4.9754 Ratings

🗓️ 30 October 2023

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. Size Matters; Spam or Phishing; iOS MAC Leaks; ZDI Summary; Octo Tempest

Transcript

Click on a timestamp to play from that location

0:00.0

Hello and welcome to the Monday, October 30th, 2020,

0:04.4

edition of the Sandinet Storm Center's Stormcast.

0:08.1

My name is Johannes Ulrich, and today I'm recording from Jacksonville, Florida.

0:13.7

A couple of interesting diaries from this weekend.

0:16.0

First, another example from Xavier about overly large files being used in order to bypass anti-matter

0:24.1

controls. For performance reasons, a lot of security controls are limiting how much of a file

0:30.6

or how big of a file they're going to analyze. So what often happens is that attackers will

0:37.3

add essentially garbage to a file in order

0:41.1

to make it large enough so it's not properly recognized by various anti-malware products.

0:48.3

This latest example that Xavier found just uses simple zeros in order to sort of be used as a padding

0:57.9

here. And yes, this does not affect the actual execution. It's religious garbage that's being

1:04.7

used to confuse anti-malver tools. And with cyber awareness month wrapping up in a couple of days, we got a related diary by

1:16.3

Guy.

1:17.1

Guy looked into a quick sort of phishing email that also could be spam.

1:22.8

It was kind of nicely customized somewhat here to our website.

1:27.9

You often see that.

1:29.3

Now, the reason these phishing emails are sometimes mistaken for spam that if you click on

1:35.9

the link, you don't always get the phishing page.

1:40.2

There are a couple things that attackers often do, like browser type, and in some cases, only the first click, for example, works and actually goes to the fishing page, and then later clicks just go more or less to a generic advertisement page, which of course then make people and responders believe that this particular

2:02.5

email was actually just a little bit of weird spam message and not a phishing message.

2:10.6

And then we got a little bit more details regarding one of the vulnerabilities that Apple addressed in iOS last week, and this was one

2:21.0

that leaked the actual Mac address of the device. In iOS, for the last couple versions, you

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.