ISC StormCast for Tuesday, July 21st 2020
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 21 July 2020
⏱️ 6 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello, welcome to the Tuesday, July 21st, 2020 edition of the Sandcent Storm Center's Stormcast. My name is Johannes Ulrich, and today I'm recording from Jacksonville, Florida. |
| 0:14.3 | For about the last two years, ever since we sort of originally saw these extortion schemes come out, Rick has been tracking the money |
| 0:24.6 | that was made using these scams. Now, in case you don't remember, these are these emails |
| 0:31.7 | that claim that someone has compromising material about you, that they used your webcam to record you, and then they |
| 0:41.4 | asked for some number of Bitcoins in order to erase that material and not leak it. Now, these |
| 0:50.3 | scams have different levels of sophistication and Rick has been tracking the |
| 0:55.7 | Bitcoin addresses that we collected that received Bitcoins as part of these scams. |
| 1:04.5 | Now we haven't really seen a lot of these lately. |
| 1:07.2 | Some of them also switched to Monero, which is more difficult to track. |
| 1:11.3 | So Rick is now wrapping this up with final post. |
| 1:16.4 | Overall, he did track 568 bitcoins or about $800,000. |
| 1:22.6 | And the final $102,000 in Bitcoins were taken out of these accounts earlier in June. |
| 1:33.7 | And the security arm of Chinese company Tencent demonstrated an interesting new variation of the |
| 1:41.1 | evil charger attack. Now, I always feel that some of the warnings of plugging your device into a public charger |
| 1:50.0 | are somewhat overblown, but, well, this new variation of the attack, I think, has some real |
| 1:56.0 | potential, but it only affects USB-C. |
| 2:00.0 | Now, USB-C is different than USB USBA in the sense that it does everything. |
| 2:05.0 | It does high power charging and high speed networking. And also has the ability to dynamically |
| 2:11.3 | adjust the charging voltage and current based on negotiating the parameters with a device. |
| 2:20.0 | Now, in the usual evil charger attack, the charger is attacking the device that connects to it |
| 2:25.7 | in order to charge. This attack sort of takes a different approach. The device connecting |
| 2:31.4 | to the charger will actually attack the charger and update the firmware in the charger, which often is not well protected. |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

