4.9 • 696 Ratings
🗓️ 25 September 2018
⏱️ 6 minutes
🧾️ Download transcript
Click on a timestamp to play from that location
0:00.0 | Hello, welcome to the Tuesday, September 25th, 2018 edition of the Sandtonet Storm Center's Stormcast. My name is Johannes Ulrich, and today I'm recording from Las Vegas, Nevada. |
0:14.2 | Looks like sextortion scams are just not going away, but they keep tuning their methodology. |
0:21.7 | So originally what we saw is emails that went around that used actual passwords that you may |
0:27.2 | have used in the past that leaked and they included this password as evidence that the attacker |
0:33.0 | controlled your system in order to convince you to actually pay the ransom to have evidence |
0:39.7 | of you browsing porn deleted. |
0:42.4 | The latest faith still includes a password, but it doesn't really appear a password that's |
0:47.2 | associated with your account according to recent password breaches. |
0:52.7 | Instead it looks like the attacker is trying to cast a wider net |
0:56.7 | by essentially reaching email users that haven't had their password leaked recently. So instead, |
1:04.5 | they're just inserting a random password, hoping that it looks convincing enough. Maybe they |
1:10.0 | even accidentally hit the right password to get you to pay up for the ransom. |
1:16.6 | Also, the Bitcoin targeted addresses are randomized in this case, so each email appears to have a different address. |
1:24.6 | In past campaigns, we saw a lot of reuse of these addresses, which actually made |
1:29.3 | a little bit easier to track these campaigns and to figure out how much money the attackers made. |
1:36.3 | These attacks have been quite profitable in the past, so that's probably why attackers are trying |
1:42.3 | various variations of this scheme. |
1:46.1 | And Apple today released the latest version of Mac OS, Mac OS Mojave or 10.14. |
1:53.2 | Now with this update, Apple did fix eight different security vulnerabilities. |
1:59.7 | Some of these security vulnerabilities we have seen last week |
2:02.5 | with the update of iOS. Of course iOS and macOS share some code. Now I expect the same |
2:09.9 | vulnerabilities to be present in macOS high Sierra or 10.13 and earlier versions of macOS and |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2025.