meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Tuesday, March 14th, 2023

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News, Technology

4.9696 Ratings

🗓️ 14 March 2023

⏱️ 5 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. #SVB Scams; CISO KEV List Additions; FortiOS Vuln Exploited;

Transcript

Click on a timestamp to play from that location

0:00.0

Hello and welcome to the Tuesday, March 14th, 2020,

0:04.7

3 edition of the Sandin and Storm Center's Stormcast. My name is Johannes Ulrich,

0:10.5

and today I'm recording from Jacksonville, Florida.

0:14.8

Silicon Valley Bank, of course, was in the news, and with that scammers are looking into trying to capitalize on this incident as well.

0:26.8

We noticed over the weekend a significant increase in domain name registrations related to Silicon Valley Bank.

0:35.8

Most of them, the ones that I at least found, just contain the three letters, SVB.

0:41.9

Login, SVB.com, SVB Login.com are two domains I'm particularly watching.

0:49.2

Many of the domains are more or less just money-making domains.

0:53.6

There's even an SVB merch domain that someone

0:57.9

registered. What I'm most afraid of happening right now is sort of a variation of the business

1:03.6

email compromise. In a classic business email compromise, an attacker is listening in on

1:09.7

emails being sent and then, for example, if an invoice is being sent, the attacker is listening in on emails being sent, and then, for example, if an invoice is

1:13.1

being sent, the attacker is injecting an additional email with updated account information

1:19.2

that, of course, points to the attacker's account.

1:21.7

I have seen a couple of people reporting that they received from vendors' email, basically,

1:32.7

with updated account information because they moved their accounts away from Silicon Valley

1:39.8

Bank and now are using a different bank for their banking. Those emails appear to be legitimate, but of course it's not a stretch to assume that the

1:51.0

bad guys are catching on to a lot of these emails being sent these days and are just

1:56.9

injecting a couple of fraudulent ones.

2:00.1

So talk to your accounting staff, reinforce some

2:03.1

of the lessons that you already should have communicated to them about updating account

2:07.4

information to validate this just with a larger normal number of these messages, with the

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2025.