ISC StormCast for Wednesday, December 11th 2019
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 11 December 2019
⏱️ 7 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello, welcome to the Wednesday, December 11th, 2019 edition of the Sandsenet Storms, Stormcast. |
| 0:07.9 | My name is Johannes Ulrich, and I'm recording from Jacksonville, Florida. |
| 0:12.7 | Well, today is, of course, Microsoft's patch Tuesday, but we also got then somewhat normal updates from Adobe. What's sort of a little bit surprised here, we also got somewhat normal updates from Adobe. |
| 0:21.6 | What's sort of a little bit surprised here, we also got updates from Apple. |
| 0:26.6 | Apple pretty much updated everything. |
| 0:29.6 | So let's start with Microsoft. |
| 0:33.6 | I would rate Microsoft's patch Tuesday as overall average 36 vulnerabilities were fixed. |
| 0:42.3 | Out of those 36, there are seven critical ones and one, and that's of the interesting part here, |
| 0:49.0 | that already was being exploited according to Microsoft. |
| 0:54.4 | The vulnerability already got exploited is CVE 2019, 1458 and it is a vulnerability that allows |
| 1:03.7 | approach escalation, so that's why Microsoft rates it as important. |
| 1:09.5 | What's sort of a little bit interesting here is that Kaspersky Labs reported this vulnerability |
| 1:16.0 | originally and apparently they found it in the wild being exploited in conjunction with |
| 1:23.5 | a Google Chrome Zero Day that was patched in November. |
| 1:29.1 | With both vulnerabilities being patched, Kaspersky released details about this particular |
| 1:35.6 | exploit. |
| 1:36.8 | They're calling this Operation Wizard opium and it did affect a Korean news site. |
| 1:45.0 | So essentially what happened here is this Korean news site got compromised and JavaScript |
| 1:50.6 | was added to their page. |
| 1:53.1 | This JavaScript then used the Chrome vulnerability in order to be able to execute code on the |
| 1:59.6 | victim system and then the approach escalation |
| 2:03.1 | vulnerability in Windows in order to gain system access. |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

