meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Thursday, July 25th 2019

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

News, Tech News

4.9754 Ratings

🗓️ 25 July 2019

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. VLC Non-Vulnerabilty; Crytominer with BlueKeep Scanner; Elastic; People as IOCs

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Thursday, July 25th, 2019 edition of the Sands and the Storms anders

0:06.3

Stormcast. My name is Johannes Ulrich. And then I'm recording from Jacksonville, Florida.

0:13.1

Some controversy yesterday about a vulnerability in VLC, Surt Bund, the German cert did warn about what it called an unpatched vulnerability

0:25.6

in VLC.

0:26.6

Now, VLC recently released some patches, but it did not include a patch in this update for

0:34.6

Lib EBML, which was the library vulnerable to the problem that was identified

0:41.9

by Sir Bund in its advisory and also published as a CVE by MITR. Well, it turns out that

0:50.9

VLC actually does include a patched version of this library for at least a year.

0:58.8

So this is really an issue that has been taken care of quite a while ago and should not

1:05.6

be a problem in any recently shipped version of VLC.

1:10.8

So in other words, well, it was already patched, so that's why there is no new patch for this

1:16.0

problem.

1:17.1

Now the only scenario that may still expose you to this vulnerability even with an up-to-date

1:20.9

version of VLC is if your Linux distribution did include the out-of-date version of Lip eBML. And in this scenario,

1:30.9

yes, the proof-of-concept videos that were published for this vulnerability will at least cause

1:37.3

VLC to crash. And in teaser has discovered a new version of the watchbog cryptocurrency mining malware.

1:48.0

Now this is a botnet that has been going around for about a year and it uses your standard

1:54.0

Linux vulnerabilities like Jira and the like in order to compromise systems and install its

2:00.2

cryptocurrency miner.

2:02.4

What sort of caught in teaser's attention is that the latest version of this particular

2:09.2

malware is now scanning for the RDP protocol.

2:13.9

And of course, with Blue Keep, everybody is sort of waiting for the Big Bang here to happen.

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.