ISC StormCast for Tuesday, January 2nd 2018
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 1 January 2018
⏱️ 7 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello, welcome to the Tuesday, January 2nd, 2018 edition of the Sansonet Storms and a Stormcast. My name is Johannes Ulrich, |
| 0:09.8 | and I am recording from Jacksonville, Florida. Well, I'm back in a new year after about a week of |
| 0:16.9 | downtime. Luckily, no major issues throughout this week, so hopefully you didn't have to rush |
| 0:25.7 | into the office to deal with any emergencies. A couple of our handlers were quite busy during the |
| 0:33.2 | week and we have a number of neat diaries that you probably want to catch up on if you didn't have a chance to read them last week. |
| 0:41.5 | For example, DDA talked about how to deal with obfuscated RTF files. RTF files are still often used in order to smuggle various office exploits into environments. |
| 0:55.4 | And in a second diary that he is talking about analyzing TNF files. |
| 1:00.6 | That's the transport neutral encapsulation format |
| 1:04.1 | that's used by Outlook and Exchange. |
| 1:08.1 | And Xavier looked back at last year |
| 1:10.5 | and the huge number of CVE numbers that were |
| 1:14.0 | published. We had about 14,700 CVE numbers published. That's more than double what we had |
| 1:21.9 | before 2016. We had about 6,400. The record so far was 2014, which was 7,900. Now, realize that last year, |
| 1:35.2 | the CVE numbering changed actually allowing for more than four digits in the CVE number. And in |
| 1:42.4 | addition, I think also a little bit the philosophy of MIDER that runs the CVE number and in addition I think also a little bit the philosophy of |
| 1:45.6 | mitre that runs the CVE system changed there was a lot of criticism that it was too difficult to |
| 1:52.2 | obtain a CVE number for some vulnerabilities and I think they changed it and are now a little bit |
| 1:59.0 | more open and easier in handing out CVEs. |
| 2:03.6 | Buck Bounties and such may also have helped here as Xavier points out and Xavier also notes that |
| 2:09.6 | we now have a number of CVEs for sort of non-traditional sources, like, for example, cars. |
| 2:18.1 | There's one for Tesla. |
| 2:20.0 | There's another one for BMW. |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

