meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Tuesday, June 26th 2018

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

News, Tech News

4.9754 Ratings

🗓️ 26 June 2018

⏱️ 7 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. Guilty by Association; Filezila; iOS Pin Brute Forcing; Azure AD to Enforce 2FA

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Tuesday, June 26, 2018 edition of the Sansand-Storm Center's Stormcast.

0:07.6

My name is Johannes Ulrich, and the time, recording, from Jacksonville, Florida.

0:12.7

Well, today we start out with a couple of possible false positives from antivirus.

0:19.9

The first case is BitMessage. That's a piece of software

0:24.6

that a reader submitted to us after it was flagged as Ransomware. As far as DDA is able to tell

0:32.6

this copy of BitMessage is genuine and does not include Ransomware.

0:40.5

But BitMessage has been included in a number of ransomware cases to allow the victim to communicate

0:47.2

with the author of the ransomware.

0:51.4

So what possibly happened is that anavirus companies saw bit

0:56.0

message as part of infected systems and then categorized it as a ransomware. And a

1:04.2

file Cilla, a GUI program that's often used for FTP on Windows and Linux is in hot water about possibly adding

1:15.6

adware to its download package. Now this all again just like the prior case came to light

1:23.6

when antivirus all of a sudden started flagging this particular piece of software.

1:29.3

Now the tricky part here is that all the software downloaded and the part that's being flagged by virus total or by various antivirus engines is a legitimate part of FileSilla.

1:43.3

However, like so often with free software, the creator does try to make a little bit of money,

1:50.0

so in this case, FileSilla includes some ads and some additional offers that allow people

1:57.0

to download additional software.

2:00.0

None of this looks outright malicious. You may consider

2:04.4

it ad bear, but that's really sort of one of the gray areas when it comes to a virus

2:10.4

scanners and malicious software. Usually it's really just called unwanted software instead of calling it outright malicious.

2:20.0

But one thing that really is illustrated by both cases, ultimately it's really impossible

2:25.6

to prove that software is not malicious. So in the end, you have to do your tests, you do some

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.