ISC StormCast for Tuesday, February 5th 2019
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 5 February 2019
⏱️ 5 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello, welcome to the Tuesday, February 5th, 2019 edition of the Sandstone Storm Center's Stormcast. My name is Johannes Ulrich. And today I'm recording from Jacksonville, Florida. |
| 0:13.4 | We got a couple excellent diaries from Rob today, the first one dealing with exploiting the struts vulnerability in VMVers V-Center. |
| 0:23.3 | So ever since Equifax, this old 2017 vulnerability in struts, of course, |
| 0:28.3 | should have been at the top of everybody's mind and patch list. |
| 0:33.2 | But it's one of those tricky things. |
| 0:35.9 | It's really hard sometimes to figure out what in your network actually uses struts and |
| 0:42.0 | it turns out, V-Sender is one of those piece of software that's of course critical to most |
| 0:48.2 | environments that does include struts. |
| 0:51.9 | And if you haven't patched it, then yes, you are vulnerable. |
| 0:56.5 | And Rob walks you through how to exploit this particular vulnerability with V-Center and to achieve |
| 1:03.9 | a remote shell to the system, which in a case of V-Center, of course, will give the attacker |
| 1:09.8 | full access to your virtual |
| 1:11.9 | infrastructure. |
| 1:15.0 | Now the second diary that Rob wrote up is actually based on a submission we got via our |
| 1:21.5 | Slack channel from Caleb. |
| 1:23.7 | Caleb was reporting that he had a user being called using the typical tech support scam phone call with a little twist to it. |
| 1:33.1 | The caller tried to make the scam more plausible by pointing to the Wikipedia page for Spy Eye. |
| 1:40.7 | Now Spy Eye is real malware, it's dangerous Malver, but this particular Wikipedia page |
| 1:46.6 | was augmented with a paragraph that kind of pointed out that normal antivirus won't work |
| 1:52.8 | and you need something that they're calling an IP technician to help you. Overall, this |
| 1:58.8 | paragraph was written pretty badly and looked overall suspicious. |
| 2:03.7 | Now, the intent here is to essentially tell the user that the person calling them is sort of one |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

