meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Tuesday, August 8th 2017

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News, Technology

4.9696 Ratings

🗓️ 7 August 2017

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. PHPMyAdmin Scans; Hotspot Shield FTC Complaints

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Tuesday, August 8th, 2017 edition of the Sanctored Storm Center's Stormcast.

0:07.4

My name is Johannes Ulrich, and I'm recording from Jacksonville, Florida.

0:12.0

Xavier today wrote about the increase in scanning for PHP My Admin in his honeypots.

0:19.1

Now, PHP, my admin, is a PHP application that can be used to administer

0:24.9

my SQL database and aside from it being often not properly secured, it often also suffers

0:33.1

from unpatched vulnerabilities. Now, in the case that Xavier observed the attacker was actually

0:41.2

quite aggressive in trying to find a PHP My Admin using a variety of different URLs. Now a lot of

0:49.9

administrators try the security through obscurity trick and hide php my admin personally i don't really see a

0:59.0

great reason why you need to have php my admin installed in the first place there are a lot of

1:05.6

gooey applications that you can use to administer my sequel if you don't like the command line.

1:12.0

And these GUI applications are really just declined applications that do not require a web

1:18.6

interface.

1:19.3

You just connect across the network, hopefully via SSL, to that MySQL database.

1:25.8

Now, I have reported in the past about cases where VPN applications didn't actually

1:31.0

provide much security or privacy.

1:34.4

For example, there have been some Android applications that claimed to provide VPN service

1:39.9

but didn't actually encrypt the data.

1:42.4

The latest case here is Anchor Free's Hot Spot Shield.

1:47.6

Now, Hot Spot Shield does claim to provide free VPN services.

1:53.8

And of course, whenever something is free, you have to look closely to figure out how are they actually paying their bills.

2:02.9

In this particular case,

2:10.5

apparently they are injecting ads into your browsing stream. They will also inject JavaScript as part of these ads and essentially de-anonymize your browsing session to the advertiser.

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2025.