ISC StormCast for Thursday, January 3rd 2019
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 3 January 2019
⏱️ 6 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello, welcome to the Thursday, January 3rd, 2019 edition of the Sandtonet Storm Center's Stormcast. |
| 0:08.3 | My name is Johannes Ulrich, and today I'm recording from Jacksonville, Florida. |
| 0:13.9 | Last week I asked for sample of CEO scams and credit card scams. |
| 0:20.2 | Well, we got a number of great submissions and Lorna today published the one case that I think |
| 0:27.6 | is in particular telling as to what lengths these attackers go through in order to actually |
| 0:34.0 | lure their victims into buying them gift cards. |
| 0:39.0 | So first of all, the attackers appear to be doing at least some manual reconnaissance here. These emails are typically not |
| 0:45.2 | sent to everybody in the company, but only to a couple of individuals. Now, in the case that |
| 0:51.9 | Lorna picked, the individual that received the email, was actually a fairly |
| 0:55.9 | new employee. |
| 0:57.3 | So there's one question as to how the attacker actually got this employee's email address, |
| 1:03.4 | and then, of course, the sender of the email claimed to be the company's CEO. |
| 1:09.9 | Throughout the entire exchange of several emails, the attacker |
| 1:14.0 | kept replying rather quickly with customized responses. This doesn't look like anything this was |
| 1:20.8 | scripted. The entire exchange lasted about five hours until the victim cut it off. These attacks have become very popular in particular around holidays, but we have also seen |
| 1:32.7 | them sometimes used after disasters. |
| 1:35.4 | For example, I think I mentioned it after the California wildfires, where some companies |
| 1:40.9 | have seen requests like this that claim to come from, for example, |
| 1:45.6 | again, high-ranking officials in the company to, for example, help out victims of these |
| 1:51.8 | wildfires who also happen to be customers of the company. So the real question, of course, |
| 1:57.9 | is how do we defend against these kind of attacks? |
| 2:01.9 | And, well, there isn't sort of a simple fits all solution for this. |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

