meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Tuesday, January 23rd 2018

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News

4.9754 Ratings

🗓️ 23 January 2018

⏱️ 5 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. HTTPs on Every Port? Curl over TOR; Spectre/Meltdown Microcode Update Woes; Quantum Cryptography Vid

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Tuesday, January 23rd, 2018 edition of the Santernut Storm Center's Stormcast.

0:07.3

My name is Johannes Ulrich, and I'm recording from Jacksonville, Florida.

0:11.9

We've got two quick and interesting diaries from the date today.

0:16.1

First one is about retrieving malware over Tor.

0:19.6

Tor, of course, is often used by attackers to anonymize themselves, but can also be useful

0:24.7

for the defender.

0:26.5

If you are analyzing malware, you often don't want to give away who it is actually who is

0:31.9

analyzing the malbear.

0:33.3

The DEA shows how to use Tor socks and curl in order to make this more anonymized download

0:40.7

pretty easy. And in a second diary, DDA is talking about how to properly analyze SSLTLS with

0:50.7

ViroShark if it's using an off port for example port 22 port 22 of course is

0:57.5

commonly used by SSH not SSL or TLS so if someone happens to use TLS over port 22

1:07.0

which is certainly possible you have to tell ViroShark to explicitly analyze it as TLS.

1:14.6

And looks like all the confusion about the Meltdown Inspector patches are just not settling

1:20.5

down.

1:21.9

Intel now removed some of the microcode patches that it has released, particular since a couple systems like

1:29.9

Ubuntu, Redhead, VMware and also HP had issues with these updates.

1:37.2

Now initially looked like only some of the older architectures were affected by this,

1:42.2

but it's also Pradwell and Skylake. Proudwell was released

1:47.2

in 2014, I believe. Skylake followed it sort of 2015, 2016, so these chips are still currently

1:56.7

being sold and they're having problems with these patches.

2:01.6

Linus Torwald also got in the game here about the patches that Intel released and he has

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.