4.9 • 696 Ratings
🗓️ 11 May 2023
⏱️ 6 minutes
🧾️ Download transcript
Click on a timestamp to play from that location
0:00.0 | Hello and welcome to the Thursday, May 11, 2020, |
0:04.5 | edition of the Science and its Storms anders Stormcast. |
0:08.9 | My name is Johannes Ulrich, and today I'm recording from Jacksonville, Florida. |
0:15.0 | In Diaries today, we have the second part of Russ's exploratory data analysis with System Cyber Attacks database. |
0:25.4 | In the first part, he talked a little bit about how to use this open source database of |
0:30.4 | attack data and use it a couple different tools. |
0:33.8 | This second part now particular focuses on some models that you can build around it to |
0:40.2 | sort of forecast. So what's going to happen with data? That's of course always interesting if |
0:46.1 | you're looking for anomalies that are deviating from this forecast behavior. So some things like |
0:53.2 | exponential smoothing, Jupiter notebooks in order to |
0:57.0 | actually conduct some of this analysis. Lots of details here. If you're into data analysis, |
1:03.3 | that's of course nice to follow through with. And this system dataset certainly sounds like a nice resource |
1:11.6 | to have some realistic data to play with. |
1:16.6 | And remember back in March, |
1:19.6 | Microsoft fixed vulnerability in outlook |
1:23.6 | that actually had already been exploited at that point in time. |
1:27.9 | The big problem here was that that hacker could send an email with a custom sound URL. |
1:34.9 | There is a feature in outlook, no idea why, that allows you to embed sounds in your email. |
1:41.3 | And just by previewing the email, then the system would attempt to download this file |
1:47.4 | from a remote source, which if you're using SMB as your protocol here, could result |
1:53.6 | in leaking NTLM credentials. |
1:57.4 | So this was a problem, was a real problem in Outlook. |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2025.