meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Wednesday, February 20th 2019

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News, Technology

4.9696 Ratings

🗓️ 20 February 2019

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. Russian Malspam; GandCrab Decrypter; Phishing From Banks; SHA-2 Patch for Win7/2008

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Wednesday, February 20th, 2019 edition of the Sands of its Stormsendors

0:06.5

Stormcast. My name is Johannes Ulrich and I'm recording from Jacksonville, Florida.

0:14.0

Typically, most of the malware we're dealing with arrives in English language emails.

0:20.8

Now, Pratt is taking a look at something a little bit different. arrives in English language emails.

0:26.5

Now, Pratt is taking a look at something a little bit different in his latest diary,

0:30.2

and that's Malspam written in Russian.

0:37.0

Now, in this particular case, the Malspam links to Troll Dash or Shade, which is Ransomware.

0:37.5

In the past, these Russian emails typically just included a SIP file that would then, of

0:42.3

course, install the Ransomware for you.

0:45.7

Turns out the attackers are now taking an extra step.

0:48.9

They're attaching a PDF.

0:51.0

Now a link in the PDF will then get you to the zip file, similar zip file as before, that

0:57.2

will then take care of installing the ransomware.

1:03.0

And talking about ransomware, while we don't really hear as much about ransomware as we

1:07.7

heard like a year ago, it's still quite active of course and one

1:12.1

variant that has been very active this year so far is Gant Crab. We have had a couple

1:17.9

cases where people contacted us that are infected with Gant Crap. Well, there is some good news here.

1:24.0

Bit Defender released yet another free decryption tool for victims of GantCrap.

1:31.0

It works all the way up to version 5.1. However, as it's typical, the case with these kind of

1:38.7

decryption tools, the bad guys already came out with version 5.2. Has been cited about three days ago. Now,

1:47.5

some of the initial reports, it wasn't quite clear whether it was actually the new version

1:52.4

that they reported. Something else about Gant Crap. Now, a lot of Ransver, of course,

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2025.