meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Wednesday, December 5th 2018

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News, Technology

4.9696 Ratings

🗓️ 5 December 2018

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. Lokibot Update; Fake Ransomware Decrypt Service; Chrome 71 Released

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Wednesday, December 6th, 2018 edition of the Sands and the Storm Center's

0:06.2

Stormcast. My name is Johannes Ulrich. And today I'm recording from Jacksonville, Florida.

0:12.9

In Diaries today, we got a quick walkthrough by Brad through the latest version of Lockheibod.

0:19.1

It, as usual usual uses email to propagate

0:22.8

and then an Excel spreadsheet in this case,

0:26.2

which of course will use macros

0:27.9

in order to load the malicious content.

0:30.8

So nothing terribly exciting here.

0:33.6

But if you came across a sample like this in your environment,

0:37.4

well Brad did the reverse

0:39.0

engineering for you.

0:42.7

And usually I don't talk much about preaches, but there have been two very large ones just

0:49.7

within a week.

0:50.5

So I want to spend a little bit time on that.

0:53.5

First one, of course, the big Starwoods

0:55.8

or Marriott Breach, and then this week we heard about the large breach affecting like

1:02.5

a hundred million users at Quorum. What I find is that a lot of people get very excited about

1:07.6

these breaches, but you really sort of have to take them a little bit into

1:11.3

perspective to see how much they actually affect you. First of all, your password. Your password,

1:19.9

well, you should assume it's going to get lost. So use different passwords for different sites,

1:26.2

and then having your password lost on one side

1:29.8

really shouldn't be an event for you. Secondly, payment card information. Payment card information

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2025.