4.9 • 696 Ratings
🗓️ 7 March 2023
⏱️ 5 minutes
🧾️ Download transcript
Click on a timestamp to play from that location
0:00.0 | Hello and welcome to the Tuesday, March 7, 2020, |
0:05.0 | edition of the Sansanet Storm Center's Stormcast. |
0:08.9 | My name is Johannes Ulrich, and today I'm recording from Jacksonville, Florida. |
0:14.4 | Very quick diary by Manuel today. |
0:17.2 | Just talking a little bit about scanning S3 buckets, |
0:20.2 | making sure that your |
0:21.7 | permissions are all right for your data. Still seeing some leaks being published here and |
0:29.7 | there where companies haven't done that right. So certainly a good reminder to double check |
0:36.3 | if your permissions are set correctly. |
0:40.4 | When we talk about malware infecting routers, we usually talk about malware like |
0:45.9 | Mirai, for example, which infects millions of routers, is very noisy and usually going |
0:52.9 | after fairly simple vulnerabilities and often |
0:56.6 | targeting pretty much unmaintained home and small business devices. |
1:02.7 | Lumen now has an interesting threat that they're tracking that's going after a bit more |
1:10.1 | sophisticated routers. |
1:12.1 | These are TreyTech 2960 and 3,900 routers that are, of course, exposed to the internet and |
1:19.9 | vulnerable. |
1:21.0 | What's also sort of interesting is bots like Mirai, they try to infect as many devices as |
1:27.1 | possible, as quickly as possible, which |
1:29.3 | of course makes them very noisy. Lumen only observed about 2% of the total number of |
1:37.3 | routers actually being compromised, so they're more or less targeting very specific routers like they connected to specific organizations |
1:47.0 | and then they're not just scanning widely but they're also installing some stealthy malware |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2025.