meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Thursday, May 13th, 2021

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News

4.9754 Ratings

🗓️ 13 May 2021

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. Exposed ICS Trending Lower; FragAttack Vendor Bulletins; Adobe Acrobat 0Day

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Thursday, May 13th, 2021 edition of the Sansanet Storms, Stormcast.

0:07.9

My name is Johannes Ulrich.

0:09.4

Entertainment recording from Jacksonville, Florida.

0:13.5

Industrial control systems being connected to the Internet have, of course, been a big topic for a few years now and we have sort of all

0:23.3

these new stories about water plants, for example, getting hacked.

0:28.6

So Jan took a look at some public resources like Shodan to see if there's any improvement

0:34.6

mean a decrease in the number of devices connected to the internet.

0:40.8

Now, many of the attacks, of course, that we have seen are not necessarily against the devices

0:44.9

itself. They're more against business networks or, for example, web applications being used

0:50.5

to manage these devices. Jan actually looked more the device themselves, like, for example,

0:55.6

exposed Modbus port or S7, which are specific protocols that are unique to these industrial devices.

1:04.8

And according to Shodan and Senses, currently there are about 70 to 80,000 devices exposed depending on the source

1:15.4

you are using. Different systems are sensitive for different protocols. For example,

1:23.3

Senses does find a lot more mod bus devices than Shodan.

1:28.3

Now with Shodan, Jan was able to go back to May last year and back then we had about

1:37.3

120,000 devices connected, so this now is down to 80,000 devices, which is certainly heading in the right direction,

1:46.7

but the graph is, well, far from linear, so it's pretty noisy, and while there's a clear

1:53.2

trend, the numbers themselves may be off by quite a bit.

1:58.6

And of course, this is somewhat related to the ransomware attack that led to the shutdown

2:02.9

of the colonial pipeline.

2:05.4

Now, while this appear to be more sort of a traditional IT attack, we do have a special

2:12.3

webcast on Thursday with Tim Conway and Jeff Shearer.

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.