ISC StormCast for Tuesday, December 20th, 2022
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 20 December 2022
⏱️ 6 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello and welcome to the Tuesday, December 20th, 2020 edition of the Santonet Storm Center's Stormcast. |
| 0:08.8 | My name is Johannes Ulrich, and I'm recording from Jacksonville, Florida. |
| 0:14.4 | Well, if you want to be ready for Christmas dinner with family, you probably need to brush up on Mastodon, which seems to be the hot topic these days around dinner tables. |
| 0:25.6 | And Xavier has a little write-up here about finding Mastodon servers. |
| 0:33.0 | Mastodon, well, actually earlier in chat, someone reminded me it feels kind of like the good old BBS, the bulletin board system, where you had various distinct systems that were operated often by individuals that were joined together in a network. |
| 0:51.1 | That's really sort of how Mastodon kind of operates. The challenge here |
| 0:55.8 | in identifying Mastodon servers is that it's not like Twitter, Facebook and such, where you |
| 1:02.6 | have one company, one domain name, or a certain range of IP address that you have to worry about. |
| 1:08.7 | But Mastodon servers can be pretty much anywhere. |
| 1:11.9 | They can be inside your network if an enterprising, cisadmin or such, set one up for their own |
| 1:19.5 | community. So it can be a little bit more difficult to identify them. And of course, |
| 1:24.5 | at least the way they're exposed, really just |
| 1:27.5 | the web servers. |
| 1:29.3 | Luckily, since these Mastodon servers are linked to each other, there are APIs out there, |
| 1:36.1 | and one server in particular, instances.social makes that available that allows you to get |
| 1:44.1 | a list of all of the host names |
| 1:46.5 | or domain names that are being used by known Massadon servers that are linked to instances. |
| 1:53.8 | Dot social. |
| 1:54.7 | Again, remember, these are only the servers that instance not social knows about. |
| 2:00.4 | The way Macedon works, you don't have to tell anybody that you're related. the servers that instance of social knows about the way |
| 2:01.0 | mastodon works, you don't have to tell anybody |
| 2:04.3 | that you're running a particular server |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

