meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Thursday, January 7th, 2021

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

News, Tech News

4.9754 Ratings

🗓️ 7 January 2021

⏱️ 4 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. Zyxel Exploitation; Fortinet Patches; Foxit PhatomPDF; Firefox Android Updates

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Thursday, January 7th, 2021 edition of the Santernut Storm Center's Stormcast.

0:08.1

My name is Johannes Ulrich.

0:09.6

I'm recording from Jacksonville, Florida.

0:13.9

Well, only took a couple days, but we are seeing now active exploitation of the Syccell vulnerability. This is the back door where we have

0:23.9

the admin password that can not be changed by a user. So certainly urgent now that you're

0:32.4

updating your devices. Not clear yet what they're attempting to do. At this point, we just see scans using

0:40.6

the username and password combination that gives you access to these vulnerable devices.

0:49.1

And while adding to this theme of parameter secure devices, actually add vulnerabilities. We got a set of

0:57.7

advisories from 40Net. For example, the 40 web application firewall that's supposed to protect

1:05.3

your web application is suffering from SQL injection as well. and also from a buffer overflow and a format string vulnerability.

1:17.6

Now, 40 Deceptor, which is 40 Nets,

1:20.4

a plines that uses deception,

1:22.9

so essentially an internal honeypot,

1:25.5

suffers from an actual vulnerability, in this case an OS command

1:31.1

injection vulnerability that could allow an attacker to execute arbitrary code.

1:37.4

Lastly, for the gate ZEL VPNs, well, this is probably the least severe of the vulnerabilities.

1:43.4

It does leak some logs from the VPN to different users.

1:50.7

So if you are using one of these three Fortnite devices, please update.

1:56.4

Haven't found any exploits out there yet, but I only did a quick Google search, so there may already

2:03.5

be more out there. Let me know if you find anything. And in case you're still running

2:09.7

your own mail server, you should be aware of an update to Dovcut. Dovcutt is a fairly popular

2:16.7

iMap server used to retrieve emails and today

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.