meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Thursday, February 16th, 2023

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News, Technology

4.9696 Ratings

🗓️ 16 February 2023

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. Passive DNS; GitHub Copilot Update; Hyundai Patches; Firefox, Citrix and HAProxy Patches

Transcript

Click on a timestamp to play from that location

0:00.0

Hello and welcome to the Thursday, February 16th, 2020, edition of the Sandsenet Storm Center's Stormcast.

0:09.5

My name is Johannes Ulrich, and today I'm recording from Jacksonville, Florida.

0:15.7

Diary by Rob today about, well, sort of passive DNS recon platforms.

0:22.4

These platforms typically collect DNS queries at various choke points and then are summarizing

0:30.7

them.

0:31.1

So you can, for example, query, and that's the example that Rob used all the host names

0:37.1

or all the DNS queries that were looked up for a particular

0:40.3

domain like Sans.edu.

0:43.8

Rob is using Cisco umbrella here to show how this type of passive DNS information works and

0:51.8

how to script against it.

0:54.4

Ambrella, of course, going with open DNS has plenty of data to mine here.

0:59.6

They also make historic data available, so not just currently valid DNS records.

1:06.2

For any kind of sort of scoping, reconnaissance for a pen test or such, this is certainly very

1:13.1

valuable information. Also, find it valuable to, for example, look at, like, look-alike or

1:20.0

imposter domains, but also to look, for example, at additional subdomains that you may find in a particular domain that,

1:30.4

for example, has been compromised and where hackers have started to add malicious records

1:35.9

to a particular domain. In addition to Cisco umbrella, there is, for example, also domain tools

1:44.1

with its acquisition of Foresight,

1:47.1

which also runs a large database of passive DNS information.

1:54.3

And GitHub updated its copilot, artificial intelligent coding assistance.

2:00.3

The way a co-pilot works is that it sort of provides suggestion as your artificial intelligent coding assistance.

2:05.5

The way a copilot works is that it sort of provides suggestion as you're typing.

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2025.