meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Tuesday, January 9th 2018

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News

4.9754 Ratings

🗓️ 9 January 2018

⏱️ 5 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. WebLogic Flaw Used To Install Crypto Miner; Fake AV Is Back

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Tuesday, January 9th, 2018 edition of the Sands and its Storm Center's Stormcast.

0:07.6

My name is Johannes Ulrich, and I'm recording from Jacksonville, Florida.

0:12.3

If you run Weblogic and PeopleSoft, two of the big Oracle products,

0:18.9

then you probably are very concerned about all the data that you have

0:23.5

stored on these systems.

0:25.5

Well, we do have an attack that is going around using a fairly new exploit against vulnerability

0:32.7

that was patched originally in October.

0:37.1

This particular exploit, however, isn't actually going after

0:40.8

your data. Renato has a great short write-up about one of these attacks. It really only

0:48.2

went after installing a crypto coin miner on these systems. You have obtained a list of possible infected systems.

0:57.0

Right now it looks like they're in the order of 7 to 800 systems that are infected just by one

1:04.0

of the campaigns doing it. We have seen two, possibly three different variations of these attacks

1:10.5

in the last week or so.

1:13.0

So if you are running WebLogic, absolutely make sure that you have this October patch applied.

1:20.2

If not, double-check the CPU load on the system.

1:23.0

It may be a little bit hot.

1:24.8

Now, the good part about this is that this particular malware isn't

1:30.0

going after the data on these systems at all. It's really just ignoring that, even though the

1:36.9

exploit is somewhat specific to this type of system. And on Tuesday, we'll have a second article about this particular campaign, actually about

1:47.4

the variations of these campaigns, including some of the estimates of how much money you

1:52.3

can earn with crypto mining like this.

1:55.6

And fake antivirus, it was like really big a couple of years ago, then sort of went away.

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.