meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Thursday, May 20th, 2021

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News

4.9754 Ratings

🗓️ 20 May 2021

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. May Forensic Quiz Solution; CIS Controls 8; iDRAC 9 Vuln; QNAP Vuln

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Thursday, May 20th, 2021 edition of the Sandcent Storm Center's Stormcast.

0:08.2

My name is Johannes Ulrich.

0:09.9

And today I'm recording from Jacksonville, Florida.

0:13.9

Brad today published the answer to this month's forensic quiz.

0:19.0

So if you participated, take a look if you got it right or if you

0:22.7

struggled with it, maybe the hints that he's now providing will help you understand what

0:28.8

happened in this particular P-CAP. Now, Pratic, congratulations, you won the Raspberry Pi for this month. We've got a ton of submissions for this

0:42.5

challenge and we'll probably do more in the future, not sure about next month. We'll still have to

0:48.2

work that out. And thanks everybody for participating and I hope you enjoyed it and also

0:54.0

enjoy Brad's analysis

0:56.1

that he posted now.

0:59.8

And with RSA this week, the Center for Internet Security also released an update to the

1:05.5

critical controls.

1:06.7

We are now at version 8 and it's now 18 controls no longer 20.

1:13.9

These controls are grouped in three basic categories, implementation groups, as they call them,

1:20.5

and then we have multiple safeguards that go with each one of these controls.

1:26.9

I would love to tell you more about these

1:29.1

griddle controls, but the Center for Internet Security believes in sort of this stupid email

1:34.6

validation system and Sands with its new overly cautious spam filter never allows these

1:41.6

emails to arrive. So sorry, maybe in a future podcast we get more

1:47.4

details if that email ever makes it. But if you want to try it out yourself, I'll post a link

1:54.0

to the Center for Net Securities page in the show notes. And if you ever had a server go down while you weren't anywhere close to the data center

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.