ISC StormCast for Thursday, December 22nd 2016
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 21 December 2016
⏱️ 5 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello, welcome to the Thursday, December 22nd, 2016 edition of the Sands and the Storms, |
| 0:06.1 | on a stormcast. My name is Johannes Ulrich, and I'm recording from Jacksonville, Florida. |
| 0:11.6 | Looks like Mirai keeps fishing for random ports in order to find more vulnerable hosts. We saw a couple |
| 0:18.2 | different variations of the Telnet port, 23., 23,231 so that's 23231 was popular earlier |
| 0:29.5 | but then also they started scanning for 23,123 so a little permutation here, 23123. Apparently what they're looking for is people running |
| 0:43.0 | telnet servers on off ports. And of course, variations of that 23 and 23,000 scheme are |
| 0:51.0 | quite common in this case. And Ukraine ergo, a large power provider in the Ukraine is reporting a power outage that |
| 0:59.6 | may be related to a cyber attack. |
| 1:03.2 | Now of course it's just about a year ago that Ukraine was hit by a relatively large cyber |
| 1:08.9 | attack that caused a multi-hour outage for a large part |
| 1:13.6 | of the country. |
| 1:15.2 | And so far, not a huge surprise to see another one sort of a year later. |
| 1:19.7 | Also starting around the beginning of December, the Ukraine reported an increase in the |
| 1:25.7 | number of attacks and attack attempts that they have seen against |
| 1:29.6 | critical infrastructure. |
| 1:31.6 | At this point, there is no clear evidence, so a lot of speculation, but certainly possible |
| 1:37.3 | that what we're seeing here is a repeat of last year's event. |
| 1:42.1 | However, this time around, I've only heard about Nautage for one to two |
| 1:47.1 | hours, so quite a bit shorter than what we had last year. Of course, it could also be just |
| 1:52.5 | simple equipment failure, and in initial hours and days of NetHack like this, it's, of course, |
| 1:59.0 | difficult to figure out what caused a certain piece of |
| 2:02.5 | equipment to fail. And Netflix's Twitter account was compromised earlier today by a group that |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

