meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Wednesday, December 21st 2016

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News

4.9754 Ratings

🗓️ 21 December 2016

⏱️ 5 minutes

🧾️ Download transcript

Summary

Daily 5 min infosec news summary. News, patches, vulnerabilities and trends in information security. vSphere Data Protection Known SSH Key; NMap 7.4 Released; SCCM Software Metering

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Wednesday, December 21st, 2016 edition of the Sandcent Storm Center's Stormcast.

0:07.7

My name is Johannes Ulrich, and today I'm recording from Jacksonville, Florida.

0:11.9

If you're using V-Sphere data protection from VM, where it's time to apply a critical update, because the current version did include a fixed

0:23.8

as H key that could be used by anybody to log in to your device.

0:30.1

So fixed passwords and the like, it's not just a problem for $50 DVRs and internet connected cameras happens also for these more

0:40.2

professional systems and again it took actually an outside source to point this out

0:45.8

to VMware now vSphere data protection is a separate component that you would

0:51.2

install to backup virtual machines so So it's not that all

0:56.0

VMware installs are affected only if you did actually install this particular add-on.

1:03.0

And we got a holiday gift from NMAP version 7.4 of us released today. No critical updates

1:09.1

here, but a bunch of new features that you may find

1:12.1

interesting like new nesee script new fingerprints and better support for geo

1:18.8

IP data so for geolocation has been added to en map and if you need something to

1:25.9

play with for the next couple days, if it's a little bit

1:28.9

slow at work, Fire Eye has a nice brief blog post about how the Microsoft System Center

1:37.0

configuration manager, also known by the Appropriation SCCM, can be used to actually meter software.

1:45.0

There's a software metering feature built in that tells you which user used what software,

1:51.0

when, and in many cases can also capture parameters or code being run within the software

1:59.0

and the like. So really a lot of intelligence here

2:03.4

for the forensics people around here.

2:06.2

And the nice part is you can actually report this remotely

2:09.8

to a central collector if you configure this all correctly.

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.