meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Thursday, December 22nd 2016

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News

4.9754 Ratings

🗓️ 21 December 2016

⏱️ 5 minutes

🧾️ Download transcript

Summary

Daily 5 min infosec news summary. News, patches, vulnerabilities and trends in information security. #Mirai keeps shifting; #Ukraine Power Issues; #OutMine Hacks @Netflix; #Methbot

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Thursday, December 22nd, 2016 edition of the Sands and the Storms,

0:06.1

on a stormcast. My name is Johannes Ulrich, and I'm recording from Jacksonville, Florida.

0:11.6

Looks like Mirai keeps fishing for random ports in order to find more vulnerable hosts. We saw a couple

0:18.2

different variations of the Telnet port, 23., 23,231 so that's 23231 was popular earlier

0:29.5

but then also they started scanning for 23,123 so a little permutation here, 23123. Apparently what they're looking for is people running

0:43.0

telnet servers on off ports. And of course, variations of that 23 and 23,000 scheme are

0:51.0

quite common in this case. And Ukraine ergo, a large power provider in the Ukraine is reporting a power outage that

0:59.6

may be related to a cyber attack.

1:03.2

Now of course it's just about a year ago that Ukraine was hit by a relatively large cyber

1:08.9

attack that caused a multi-hour outage for a large part

1:13.6

of the country.

1:15.2

And so far, not a huge surprise to see another one sort of a year later.

1:19.7

Also starting around the beginning of December, the Ukraine reported an increase in the

1:25.7

number of attacks and attack attempts that they have seen against

1:29.6

critical infrastructure.

1:31.6

At this point, there is no clear evidence, so a lot of speculation, but certainly possible

1:37.3

that what we're seeing here is a repeat of last year's event.

1:42.1

However, this time around, I've only heard about Nautage for one to two

1:47.1

hours, so quite a bit shorter than what we had last year. Of course, it could also be just

1:52.5

simple equipment failure, and in initial hours and days of NetHack like this, it's, of course,

1:59.0

difficult to figure out what caused a certain piece of

2:02.5

equipment to fail. And Netflix's Twitter account was compromised earlier today by a group that

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.