meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Thursday, May 27th, 2021

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News

4.9754 Ratings

🗓️ 27 May 2021

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. Bluetooth Vulnerabilities Trends; Google Chrom Update; PDF Certification Attacks; nginx Vulnerability

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Thursday, May 27th, 2021 edition of the Sandcent Storm Center's Stormcast. My name is Johannes Ulrich.

0:10.6

And again, today, recording from Jacksonville, Florida, but teaching virtually in London, England.

0:18.9

In Diaries today, we got a quick one by Viging, who looked into trends in Bluetooth vulnerabilities.

0:26.7

It really felt like there were a lot of Bluetooth vulnerabilities sort of in the last couple

0:30.9

years, and well, Wiching is confirming that with his survey.

0:37.1

Of course, this coincides with a lot more use of Bluetooth in mobile devices.

0:43.3

E Ching here points out the COVID contact tracing apps, for example, over the last year,

0:50.8

which sort of again, focused more attention on Bluetooth security.

0:56.5

But in general, it's a little bit hard to sort of figure out what to take away from it.

1:01.8

It's certainly a target.

1:04.7

And it also gets more and more difficult to actually live without Bluetooth or turn it off in a mobile device, given that with

1:12.8

disappearing headphone jacks and such, Bluetooth becomes more important to actually use

1:18.1

the device itself. And Google today released Google Chrome 91, which fixes 32 different

1:27.2

security vulnerabilities.

1:29.4

Nothing outrageously dangerous, so I would just have Google Chrome do its job in updating itself,

1:37.0

maybe check in a couple days that the update actually happened.

1:40.7

Now, as announced back in April, Google Chrome also now discontinues the use of

1:46.5

port 10,080. This port has been found vulnerable to slip streaming because some application

1:54.8

layer gateways are using port 10,080. We'll have to see how that entire situation involves.

2:01.6

There appears to be a little bit whack the mole game here

2:05.6

with more and more ports being blocked in order to protect certain application layer gateways.

2:12.6

Port 10,080 is reserved for Amanda backup by Ianna, but it's also used by V-Center. So those are

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.