meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Thursday, December 1st 2016

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News

4.9754 Ratings

🗓️ 30 November 2016

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min infosec news summary. News, patches, vulnerabilities and trends in information security. Mozilla Patches #Firefox 0-Day; SQL Slammer; #Goolian Malware; Bypassing #SAML

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Thursday, December 1st, 2016 edition of the Sansonet Storm Center's Stormcast.

0:06.8

My name is Johannes Ulrich, and I'm recording from Jacksonville, Florida.

0:11.7

Mozilla today released a new version of Firefox, 50.0.2, just a couple days after it released 50.0.1. The reason for this quick update cycle was a vulnerability

0:27.0

that's actually already being exploited in the wild and has been made public. So the exploit code

0:34.2

is out there and for everybody open to inspect and copy.

0:39.3

The reason this was uncovered was that users of the Tor browser were attacked using

0:46.3

this particular exploit.

0:48.3

Now Tor browser is based on Firefox, so there's also a new version of Tor browser that was released today in

0:56.6

response to this vulnerability. So the latest version for the Tor browser is 607 and Firefox 502. If you

1:08.0

haven't updated today, then you're vulnerable. A little side note here, the vulnerabilities being exploited here is apparently very similar

1:17.4

to a vulnerability.

1:18.8

It was exploited a couple years ago by law enforcement in order to unmask tour users that

1:26.1

visited child porn sites. It's not really clear who is behind

1:30.3

this particular exploit. However, it's very possible that someone used that old exploit from a

1:38.2

couple of years ago sort of as a template to develop this new one. And then we got a couple of reports from readers that they observed in the network a significant

1:48.1

increase in traffic trying to exploit the sequel Slammer vulnerability for the young kids around

1:55.4

here.

1:56.0

This was back in 2003, a big thing.

1:59.6

Costs Nautage in parts of the internet just because of the immense amount

2:04.3

of traffic that the forum caused back then.

2:08.2

Well, in our data, it never really sort of went away over the last couple of years.

2:12.9

There's sort of each day about 50 or so different hosts that are scanning for this vulnerability.

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.