meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Tuesday, October 24th, 2023

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News

4.9754 Ratings

🗓️ 24 October 2023

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. Apple TV IPv6 DoS; Squid Patches; Critical Citrix Patch; Cisco Vuln Updates;

Transcript

Click on a timestamp to play from that location

0:00.0

Hello and welcome to the Tuesday, October 24, 2023 edition of the Sansonet Storm Center's Stormcast.

0:09.4

My name is Johannes Ulrich, and today I'm recording from Jacksonville, Florida.

0:15.5

Wrote up a little incident I had in my home network today.

0:20.3

Now, wasn't a breach. It was more, well,

0:23.9

sort of an availability issue. And the problem here is with Apple TVs. Looks like Apple TVs

0:31.1

have started in some recent update to act as, well, IPV6 routers in the sense that they are sending

0:39.6

router advertisements.

0:42.0

Not really clear why they're doing a comment that is quite plausible that was sent to the

0:48.8

post is that it may be related to the threat and matter networking protocols. These are home automation

0:56.9

protocols that have been implemented in recent versions of Apple TV, and well, they rely on these

1:05.4

unique local IPV6 addresses. However, these router advertisements can conflict with other router

1:13.0

advertisements that you may have in your network and lead to instabilities in IPV6.

1:18.9

Looks like particular Linux has some issues here about getting the priority of these IP

1:25.5

addresses or straight.

1:35.6

So if you have some issues with IP6 connectivity, in particular from Linux, it may be your Apple TV that is interfering.

1:42.3

If you have any other insight here, really would be interesting to hear how to possibly disable these router advertisements. Haven't really sort of seen a good way of doing that

1:45.3

in the apple tv setup there is pretty much no ipv6 configuration ability whatsoever and also

1:55.6

disabling some of the home kit functionality still doesn't disable these router advertisements.

2:03.9

And remember how a couple of weeks ago I think it was.

2:07.1

I talked about a number of war on abilities that were made public in the Squit proxy.

2:13.6

Squid being a very, very popular proxy server used by a lot of networks and also often embedded into other products.

2:23.3

Well, it looks like we have three more patches now for these vulnerabilities.

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.