meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Tuesday, November 17th 2020

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

News, Tech News

4.9754 Ratings

🗓️ 17 November 2020

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. Old Vulnerabilities; XenApp/Desktop Update; Anti Zoombombing; Firefox Vuln Details

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Tuesday, November 17th, 2020 edition of the Sands and at Storm Center's

0:07.3

Stormcast. My name is Johannes Ulrich, and today I'm recording from Jacksonville, Florida.

0:14.8

One common problem with network security, of course, is to always sort of chase after the new and shiny thing, the latest

0:22.9

vulnerability, and well in the process of forgetting about a lot of the old vulnerabilities

0:29.0

that may be still hanging around. Jan took a look at Shodan to see how many of these older

0:36.7

vulnerabilities are still being exposed and

0:40.5

well right towards the top and interesting remote code execution vulnerability in the IIS

0:48.5

web server came up. Not sure if you remember, it was in 2015 when this vulnerability in HTTP.Sys was

0:58.2

originally discovered.

1:00.7

Good thing about this particular vulnerability, and maybe that's sort of what prevents

1:05.5

it from getting patched also is that they have never really been sort of a full remote code execution

1:13.5

proof of concept published for this vulnerability. The only exploits that were actually being

1:20.9

published were denial of service and information leakage of vulnerabilities. Next couple of 2019 vulnerabilities,

1:31.1

the XM vulnerability.

1:33.5

NSA, a couple of government agencies have warned about this vulnerability multiple times,

1:40.0

but yes, still over a quarter million of vulnerable systems exposed.

1:48.1

And of course, the other 2019 one is a blue keep.

1:53.0

Lastly, heart bleed of all vulnerabilities.

1:56.5

That one was very heavily advertised and people were heavily pushed to patch it.

2:02.6

Still 200,000 machines exposed.

2:06.5

So the big problem here is we do have hundreds of thousands of unmaintained systems connected to the internet,

2:14.3

just waiting to be exploited in some form. Hope these are not systems that any of my

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.