ISC StormCast for Wednesday, December 13th 2017
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 13 December 2017
⏱️ 7 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello, welcome to the Wednesday, December 13th, 2017 edition of the Sandton and Storm Center's Stormcast. |
| 0:07.7 | My name is Johannes Ulrich, and I'm recording from Washington, D.C. |
| 0:12.0 | Today, Microsoft Patch Tuesday, we got about 36 different vulnerabilities that are being addressed in these patches. |
| 0:21.8 | In addition, of course, |
| 0:29.3 | we got an update for Flash. The lion share of the vulnerabilities goes to the scripting engine. We do have, for example, information disclosure vulnerabilities, memory corruption |
| 0:34.5 | vulnerabilities. That typically affects your browsers. If there was surprise |
| 0:41.0 | among these updates, then it is an update for Windows RAS. Windows RAS is the routing and remote |
| 0:49.7 | access service. It's not enabled by default, but if you have it enabled, if your system is accessible |
| 0:58.4 | to RPC, then there is a possible remote code execution vulnerability. Microsoft rated this one |
| 1:06.3 | only as important. I think it's sort of the a critical, not sure why Microsoft stuck with |
| 1:12.0 | important here, probably because this particular component is not enabled by default, |
| 1:18.0 | and I don't think it's actually enabled that often. In addition, we also have two vulnerabilities |
| 1:24.8 | that are being addressed in Microsoft's Malware Protection Engine. |
| 1:29.2 | These are these issues that have been patched last Friday. |
| 1:33.6 | And again, you don't really have to apply a regular Windows patch to fix those issues. |
| 1:39.5 | Instead, these updates are being pushed as part of signature updates that are being released daily for the Malver Protection Engine. |
| 1:49.4 | So nothing really too overly exciting here. |
| 1:51.9 | None of the vulnerabilities being addressed here had been disclosed publicly or had been exploited in the past. |
| 1:59.2 | So unless you have a system that has the routing and remote access |
| 2:04.8 | service enabled, I would just follow your standard patch procedure. No real reason to expedite |
| 2:11.4 | anything here. And since it's getting easier and easier to obtain TLS certificates for your website. There is also more |
| 2:21.0 | fishing going on that does use websites that are protected by TLS. This will make it even more |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

