meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Tuesday, May 4th, 2021

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News

4.9754 Ratings

🗓️ 4 May 2021

⏱️ 5 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. Apple WebKit 0-Day; MSFT Exchange PoC; Micro-Op Caches; Pulse Secure Update

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Tuesday, May 4, 2021 edition of the Sansonet Stormsendors Stormcast.

0:07.8

My name is Johannes Ulrich.

0:09.4

And then I'm recording from Jacksonville, Florida.

0:14.0

Just literally a few days after updating its operating systems, Apple today released another update for macOS, iOS, iPadOS, as well as

0:24.5

watchOS, fixing a number of different vulnerabilities that are currently actively been exploited.

0:31.7

All these vulnerabilities are affecting WebKit, which is Apple's browser engine. Didn't see an update for Safari itself.

0:41.9

Usually Apple does publish a standalone update for older versions of Safari, so that may still be

0:49.9

coming. Also unclear at this point if any other browsers that use WebKit are affected.

0:57.0

There appear to be two core vulnerabilities that are being addressed here, CVE 2021, 3665 and then 30663.

1:09.0

The first one is a memory corruption issue, the second one in integer overflow, both reported

1:15.9

by different researchers. Now, there's also an update for the older version of iOS, iOS 12.5,

1:24.0

which I believe is the oldest iOS version still supported for devices that don't support

1:30.4

iOS 14.5. This older version of iOS is affected by a total of four different vulnerabilities.

1:40.3

WatchOS only suffers from the memory corruption issue. So the quick summary,

1:46.4

get patching and no public exploit yet available for these vulnerabilities, but given that it

1:53.7

has already been exploited, that's probably not too far out. And talking about patching, I hope

2:00.8

you applied all the patches that Microsoft released a couple

2:05.2

weeks ago, in particular the ones for Exchange.

2:09.2

Turns out that we do have the first proof-of-concept exploit that was made public for one

2:15.8

of the four Exchange vulnerabilities that was patched with this last update.

2:21.5

CVE 2021-28482, the exploit was published to GitHub.

2:29.3

And it demonstrates code execution by launching MSPaint. Of course, it should be relatively straightforward

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.