ISC StormCast for Thursday, June 29th 2017
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 29 June 2017
⏱️ 6 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello, welcome to the Thursday, June 28, 2017 edition of the Sansandet Storm Center's Stormcast. |
| 0:07.7 | My name is Johannes Ulrich, and today I'm recording from Columbia, Maryland. |
| 0:12.5 | News about the Petia-like ransomware is still dominating the headlines, but really not much news since yesterday about this it sounds like |
| 0:23.3 | things are somewhat under control for now at least until the next variant |
| 0:27.9 | emerges a number of large companies got hit by this ransomer looks actually |
| 0:33.8 | like the impact was almost a little bit bigger than Wanna Cry here. |
| 0:38.3 | So keep making sure that your systems are patched, backed up, and SMB version 1 is disabled, |
| 0:46.3 | unless you like to rush off an occasional ransomware outbreak. |
| 0:51.3 | One issue I forgot to mention yesterday was that the email address used to communicate with the attackers and to purchase the |
| 1:00.0 | description key was shut down soon after the malware was released. So if you're infected by this ransomware and you're transferring money to the Bitcoin account in question here, |
| 1:13.2 | well, you'll not be able to actually receive a key to decrypt your systems, so no point in |
| 1:20.3 | paying up. In case you're using Bantu Linux and smiled at the events of the last days. Be aware that |
| 1:30.3 | today a critical vulnerability in system D for Ubuntu was patched. The vulnerability is |
| 1:37.6 | exploitable via an oversized DNS response. It doesn't look like it is trivial to exploit, |
| 1:45.1 | but sufficient details were released about this vulnerability |
| 1:49.3 | to allow a creative exploit writer to prove me wrong. |
| 1:55.1 | So a patch is available, applied as soon as possible. |
| 2:00.7 | And a while ago, Microsoft announced, and I mentioned it here in this podcast, applied as soon as possible. |
| 2:05.9 | And a while ago, Microsoft announced, and I mentioned it here in this podcast, that EMET will no longer be supported. |
| 2:08.8 | Well, this enhanced mitigation experience toolkit was actually quite popular. |
| 2:15.7 | A lot of security people complained about Microsoft dropping support for it and looks like Microsoft |
| 2:22.7 | actually listened. |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

