4.9 • 696 Ratings
🗓️ 5 December 2018
⏱️ 6 minutes
🧾️ Download transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello, welcome to the Wednesday, December 6th, 2018 edition of the Sands and the Storm Center's |
| 0:06.2 | Stormcast. My name is Johannes Ulrich. And today I'm recording from Jacksonville, Florida. |
| 0:12.9 | In Diaries today, we got a quick walkthrough by Brad through the latest version of Lockheibod. |
| 0:19.1 | It, as usual usual uses email to propagate |
| 0:22.8 | and then an Excel spreadsheet in this case, |
| 0:26.2 | which of course will use macros |
| 0:27.9 | in order to load the malicious content. |
| 0:30.8 | So nothing terribly exciting here. |
| 0:33.6 | But if you came across a sample like this in your environment, |
| 0:37.4 | well Brad did the reverse |
| 0:39.0 | engineering for you. |
| 0:42.7 | And usually I don't talk much about preaches, but there have been two very large ones just |
| 0:49.7 | within a week. |
| 0:50.5 | So I want to spend a little bit time on that. |
| 0:53.5 | First one, of course, the big Starwoods |
| 0:55.8 | or Marriott Breach, and then this week we heard about the large breach affecting like |
| 1:02.5 | a hundred million users at Quorum. What I find is that a lot of people get very excited about |
| 1:07.6 | these breaches, but you really sort of have to take them a little bit into |
| 1:11.3 | perspective to see how much they actually affect you. First of all, your password. Your password, |
| 1:19.9 | well, you should assume it's going to get lost. So use different passwords for different sites, |
| 1:26.2 | and then having your password lost on one side |
| 1:29.8 | really shouldn't be an event for you. Secondly, payment card information. Payment card information |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2025.