meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Thursday, March 19th 2020

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News

4.9754 Ratings

🗓️ 19 March 2020

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. TrendMicro Update; More VMWare Updates; Ransomware Trends; EnigmaSpark

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Thursday, March 19th, 2020 edition of the Sandcent Storm Center Stormcast.

0:07.3

My name is Johannes Ulrich.

0:08.8

I'm recording from Jacksonville, Florida.

0:12.3

Today we got a critical update from Trent Micro to start out with.

0:18.0

It does affect Apex 1 as well as Office ScanXG, and at least two of the

0:26.1

vulnerabilities are already actively being exploited. Another total of five vulnerabilities

0:33.5

that are being addressed in this update, the two that are already actively being exploited are rated as critical with a CVSS score of 9.1 and 8.0.

0:45.5

However, the reason they don't get the full score of 10 is in part because they do require some user authentication, but do, once the user is authenticated,

0:56.3

allow remote code execution.

0:59.0

The remaining three vulnerabilities actually have the CVSS score of a full 10, so no

1:05.2

authentication required, gaining system privileges, and all of that remotely, but no active exploitation of these

1:14.1

remaining three vulnerabilities yet. So this is certainly an update that you do want to apply

1:20.1

quickly, not sure how long it will take until we see an exploit for these other three

1:25.9

vulnerabilities, which actually appear to be more severe.

1:29.8

I'm not exactly sure if this is a good or a bad thing, but Trent Micro points out that

1:35.5

these products are basically the server, the backend part of their anti-Melver products,

1:41.9

and as such, you really shouldn't expose them to the open network

1:47.0

so that would make exploitation a bit more difficult.

1:53.0

And then we got another update from VMware, it's addressing two vulnerabilities,

1:58.0

one of which is only affecting the Mac version. So that's Fusion, BMRC

2:04.1

for Mac, and Horizon Clined for Mac. And it does make the Mac, so the host, vulnerable to

2:12.1

privilege escalation. What makes it so interesting kind of is that this is very trivial to exploit vulnerability, and there is already a public proof of concept exploit out there.

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.