ISC StormCast for Tuesday, March 14th 2017
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 14 March 2017
⏱️ 6 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello, welcome to the Tuesday, March 14th, 2017 edition of the Sansanet Storm Center's Stormcast. My name is Johannes Ulrich, and I'm recording from Jacksonville, Florida. Remember, it's a double patch Tuesday. Today, we should expect the February and the March patches being released today by Microsoft in addition to the usual updates |
| 0:24.3 | from Adobe and likely others. Jim today re-released his 6.P.Y tool. It's a tool that pretty simply |
| 0:33.7 | just calculates hashes for binary, but now he added support for Shaw 3. |
| 0:41.4 | Now, SHA3 support isn't typically included in standard libraries, so you have to make sure |
| 0:48.0 | that you are installing the SHA-3 Python library, which I believe is only available for more recent versions of |
| 0:56.4 | Python, like 3.6 and larger. And just as a reminder, because I don't really hear a lot of talk |
| 1:04.3 | about it is the Apache Struts 2 vulnerability. It's still out there, and it's very aggressively being probed. I saw a couple |
| 1:13.1 | of Pearl Bots that were attempted to be installed in our Honeypot earlier today. Also, the |
| 1:20.8 | Canada Revenue Agency had to shut down its website over attacks using this particular vulnerability. They should have it patched. |
| 1:31.5 | Now, if you do have any kind of web application firewall, it shouldn't be too difficult to block |
| 1:37.4 | these attacks. Please consult with your vendor to make sure that you get this right. |
| 1:43.5 | At this point, if you find an unpatched |
| 1:47.1 | and unprotected site, you probably have to assume that it is already compromised. I mentioned last |
| 1:54.9 | week about the Nintendo Switch using a web kit-based browser in order to allow the user to interact with |
| 2:02.5 | captive Wi-Fi portals. Well, we got the first exploit now, taking advantage of it. |
| 2:08.9 | Turns out that the particular version of WebKit being used by the Nintendo Switch is |
| 2:14.5 | quite old. It corresponds to iOS 9.3. |
| 2:19.1 | And there are exploits available |
| 2:22.7 | that just have to be adapted for the Nintendo Switch. |
| 2:27.2 | First step is explained in an interesting video |
| 2:31.0 | if you're into writing exploits |
| 2:33.0 | and really wanna understand how they work. |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

