4.9 • 696 Ratings
🗓️ 5 November 2024
⏱️ 5 minutes
🧾️ Download transcript
Click on a timestamp to play from that location
0:00.0 | Hello and welcome to the Tuesday, November 5, 2024 edition of the Sands and at Storm Center's Stormcast. |
0:08.3 | My name is Johannes Ulrich and the time recording from Riyadh, Saudi Arabia. |
0:14.2 | The DA today published another diary-related PDF analysis and how to use QPDF with the DAE's own tool, PDF ID, as well as PDF parser. |
0:28.0 | The issue that the DA is discussing here is encrypted PDFs. |
0:34.5 | If you do have an encrypted PDF, the structure of the encrypted PDF is still visible. However, the details, of course, are not visible because they are encrypted. So, for example, you'll be able to see what kind of streams are available, also if there are any your eyes in the PDF, |
0:55.4 | but beyond that, in order to learn more about the PDF, you first need to decrypt it. |
1:01.9 | That's where QPDF comes in. |
1:04.5 | It allows you to decrypt the PDF if you provide the password. |
1:10.0 | Once decrypted, then of course, it's pretty straightforward to read the PDF if you provide the password. Once decrypted, then of course, it's pretty straightforward |
1:13.5 | to read the PDF into PDF parser to learn more details. There's also an option to have a PDF |
1:20.9 | that's marked as encrypted, but is encrypted with an empty password. In that case, QPDF will just |
1:27.3 | simply decrypted for you. |
1:30.3 | An Octa released an update for Octa Verify, fixing a vulnerability that may allow an attacker to retrieve passwords from a compromise system. |
1:43.3 | So, first of all, in order to exploit the vulnerability, |
1:46.9 | the attacker has to have already access to a system with the Octa Verify agent for Windows |
1:53.2 | installed, and you must have the desktop multi-factor authentication passwordless logins enabled. In this case, there is the |
2:04.4 | Octa device access pipe that is being accessible and that's how an attacker may be able to |
2:12.7 | obtain the passwords used by Octa Verify. |
2:18.2 | Updates are available. |
2:21.3 | And QNAP released another patch today. |
2:24.1 | This patch for a change does not affect their network storage device. |
2:29.1 | Instead, it affects their perimeter security device, Q router. |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2025.