meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Wednesday, December 13th, 2023

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

News, Tech News

4.9754 Ratings

🗓️ 13 December 2023

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. Microsoft Patches; Malicious OAUTH; Apache Struts2 Exploit;

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Wednesday, December 13th,

0:03.4

2003 edition of the Sansonet Storm Center's Stormcast. My name is Johannes Ulrich,

0:09.7

and then I'm recording from Washington, D.C. It's Microsoft Patch Tuesday, and luckily,

0:17.2

for December, we don't have too many vulnerabilities to worry about here for the holidays.

0:24.0

Total of 35 different Microsoft vulnerabilities that are being addressed in this particular update.

0:32.8

And then we have in addition to that five chromium patches that of course went into Microsoft Edge.

0:40.2

Among the patches that are being offered here today, we got four critical patches to affect

0:48.1

internet connection sharing and could lead to remote code execution. We have one in the

0:54.0

Microsoft Power Platform and the fourth

0:57.3

and last one in Windows MSHtml. That's also a remote code execution vulnerability.

1:04.8

Wouldn't really consider any of them sort of a must patch now vulnerability, but definitely,

1:13.5

you know, as all critical vulnerabilitiesables get around to them and apply the patches one of the warnabillies CVE 20203 2588 has already been

1:22.0

made public now this is one of those AMD-specific speculative execution vulnerabilities, meaning an

1:32.3

informational leakage vulnerability, not currently being exploited.

1:37.3

It's the same family as many of these sort of specter usually called CPU vulnerabilities. The reason of vulnerability like this shows up in Microsoft's

1:48.2

patch Tuesday is that this patch will include updated microcode for affected CPUs. And Microsoft

1:58.6

also published a blog post with details regarding the abuse of Oath applications.

2:07.0

Oath, of course, is well respected, even though a sometimes complex authentication mechanism

2:12.7

that allows you to delegate privileges to an application.

2:17.0

This is being abused here in first

2:20.4

compromising a particular user's account the old way via password brute forcing or machine in the

2:27.2

middle attacks. There are a couple of different scenarios that Microsoft outlines in this respect.

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.