4.9 • 696 Ratings
🗓️ 4 May 2023
⏱️ 8 minutes
🧾️ Download transcript
Click on a timestamp to play from that location
0:00.0 | Hello and welcome to the Thursday, May 4, 2020, |
0:03.7 | 3 edition of the Sandcent Storm Center's Stormcast. |
0:07.7 | My name is Johannes Ulrich, and I'm recording from Jacksonville, Florida. |
0:14.4 | Savi today wrote about an increase in scans for configuration files on his honeypot. |
0:21.7 | This is something that we have also been tracking in the honeypots deployed by our |
0:27.3 | volunteers, so in our D-Shield Honeypot network. |
0:31.2 | I've written a couple times about this in the past, |
0:33.5 | but what it really comes down to is that if you have any configuration file like environment variables or the like in your root web directory, they probably have been leaked. |
0:46.6 | There are a number of different name variations and so that are being attempted here. |
0:51.3 | If you go to our honeypot data, the web honeypot data page, |
0:56.3 | you can see sort of that among the top hits for any given days recently, there were things |
1:03.2 | like dot-env, Amazon.com, dot-env backup, and various variations of these configuration file names. So double check that you |
1:14.6 | haven't left any configuration files like this in your home directory. And not unexpectedly, |
1:21.9 | Google today announced that if you have an account with any of the Google sites, you will now be able to use pass |
1:30.8 | keys and also make pass key your exclusive way, how you are logging in to your Google |
1:37.5 | account, meaning that you will no longer need a password, but you also will no longer be able |
1:43.8 | to use a password if you wish |
1:45.8 | to do so. So this is an option that you have. What excites me about this is a pass case, |
1:51.3 | really sort of the next step in that Fido2 aligns motion to passwordless authentication. It's a |
1:58.9 | really interesting technology. It builds on top of the sort of |
2:03.7 | web auth and ecosystem that has evolved in the last few years. What I find kind of exciting about |
2:10.4 | PASCII versus some of the earlier kind of implementations of these FIDO standards is that it |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2025.