ISC StormCast for Wednesday, August 5th 2020
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 5 August 2020
⏱️ 6 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello, welcome to the Wednesday, August 5th, 2020 edition of the Sand Center Storm Center's Stormcast. |
| 0:07.4 | My name is Johannes Ulrich. |
| 0:08.9 | And today I'm recording from Jacksonville, Florida. |
| 0:13.2 | I was a bit over a week ago that Cisco released a patch for CVE 2020-3452. |
| 0:25.6 | This was the directory traversal vulnerability in its adaptive security airplanes and firepower threat defense. Now pretty much immediately after the patch was released, |
| 0:33.6 | there were some reports of exploit attempts in the wild. No big surprise. The exploit is |
| 0:39.5 | rather trivial. We primed our honeypots to basically look for these exploit attempts. And yes, |
| 0:47.1 | we are seeing some, but actually very few. It's just at a rate of a couple a day, and at this point we only see essentially |
| 0:57.6 | checks whether or not a particular system is vulnerable, no exploit attempts where they're actually |
| 1:03.0 | trying to read confidential files. This could in part be due to our Honeypot not very well emulating this vulnerability. |
| 1:13.6 | So maybe we are just not seeing the additional exploit attempts after the initial detection. |
| 1:20.8 | And recently we had a couple of high-profile DNS outages that were essentially caused by misconfiguration. |
| 1:29.5 | This week we had Telstra in Australia. |
| 1:33.5 | A few weeks I think it was ago, we had Cloudflare having some issues. |
| 1:38.3 | And one thing that sort of became obvious there is that there are a few large DNS providers that are really sort of covering a large |
| 1:48.8 | part of the Internet or the domains. Now, the two outages that I mentioned were in part the |
| 1:57.5 | authoritative name servers, but also recursive name servers. |
| 2:01.6 | Now, I took a closer look at authoritative name servers by essentially parsing through some of |
| 2:08.4 | the top-level domain zone files. |
| 2:11.5 | Looked at about, I think it was 400 million records. |
| 2:15.6 | That's about how many domains were in these files. And well, it turns out |
| 2:20.7 | it doesn't look good. Shouldn't really surprise anybody. Looked a bit worse than I thought it |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

