meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Wednesday, December 16th 2020

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

News, Tech News

4.9754 Ratings

🗓️ 16 December 2020

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. FireEye Maldoc; Difference Maker; F5 Big-IP; Google Outage; GoLang XML

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Wednesday, December 16th, 2020 edition of the Sandcent Storms, Stormcast.

0:08.0

My name is Johannes Ulrich, and today I'm recording from Jacksonville, Florida while teaching at the Cyber Defense Initiative in Washington, D.C.

0:19.1

A lot of news still about solar winds, nothing really fundamentally different from what

0:25.6

we already talked about.

0:27.3

Solar Winds has sent emails to affected and non-affected customers.

0:33.1

So if you are a customer, you should have received an email that should state if you downloaded

0:39.4

or didn't download an affected version of solar winds. There's also a lot of speculations

0:46.6

around this event, of course, like with any big event. And be a little bit careful here.

0:52.1

If you read some interesting, exciting news, that you double check it, try to find original sources, and try to verify it with other independent sort of news outlets to figure out if this is something to really worry about.

1:10.4

And a little bit related to this, well, Did he Stevens, he went to Virus Total to look for

1:16.4

some of Fire Ice stolen tools, given that they published the signatures, and he found some

1:23.7

malicious documents that apparently were used in the past in some penetration tests,

1:29.7

and he shows you how to analyze these particular tools, of course, taking advantage of his

1:36.8

favorite tool, Olli Dump.

1:39.3

The document he found is actually reasonably straightforward, so real nice sample if you want to hone your

1:47.0

reverse analysis skills.

1:49.0

And talking about DDA, DDA was also awarded one of the 2020 Difference Makers Awards by Sands.

2:00.0

This is something that Sands Awards always at this

2:03.7

Cyber Defense Initiative conference. It's happening right now, which of course is typically

2:09.7

also the last conference of the year. This year, of course, no big awards ceremony. Instead,

2:16.6

we'll have a webcast on Thursday where the different

2:21.3

winners of the award this year are introduced. And if I've fixed three vulnerabilities in

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.