meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Thursday, December 9th, 2021

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News, Technology

4.9696 Ratings

🗓️ 9 December 2021

⏱️ 5 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. Forensic Challenge; Phishing with MSFT OAuth; Android Patchday

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Thursday, December 9th, 2021 edition of the Sansonet Storm Center's Stormcast. My name is Johannes Ulrich, and then I'm recording from Jacksonville, Florida.

0:13.4

We do have a new forensic challenge thanks to Brad who posted this again for this month.

0:27.1

So as usual, there is a packet capture that you're expected to analyze with WireShark in order to answer the questions that Brad posted here.

0:33.7

Speed doesn't matter in this case.

0:35.1

You just have to submit the answer before the deadline. That's Wednesday, December 22nd. As usual, we'll give away a raspberry pie and, well, probably won't make it before the holidays, given that we determine the winner on December 22nd, but well, shortly thereafter,

0:57.1

you'll hopefully get it.

0:59.2

Raspberry pies have been a little bit in short supply, so sorry if there's a little bit

1:02.8

delay then in shipping them out.

1:05.6

One of the services offered by cloud providers is the ability to run entire desktop operating systems

1:13.6

in the cloud and access them remotely. This, of course, provides a nicely remote managed

1:20.3

solution for workers to have a protected system in the cloud that they are then using sort of for the daily work and that's

1:29.9

isolated from anything that they may be doing in their home networks. But of course, you do want

1:37.1

to connect some physical devices that are located in the user's office to these remote desktops,

1:46.0

in particular USB devices like webcams.

1:49.8

So you essentially can run Zoom on the remote desktop in the cloud

1:54.0

and at the same time use the USB webcam that you have connected to your home computer.

2:00.8

In order to provide this capability,

2:03.9

the providers are using a library by Elthema that is implementing a USB over Ethernet

2:11.9

protocol. Sadly, according to a blog post by Sentinel Labs, this particular SDK has numerous vulnerabilities

2:20.3

that allow for privilege escalation on the remote desktop up to the kernel level, which

2:27.4

then in turn could be used to, for example, disable some security services.

2:33.3

There are various providers that are offering these

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2025.