ISC StormCast for Wednesday, January 8th 2020
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 8 January 2020
⏱️ 5 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello, welcome to the Wednesday, January 8, 2020 edition of the Sandton, Storm Center's |
| 0:06.5 | Stormcast. |
| 0:07.5 | My name is Johannes Ulrich, and I'm recording from Jacksonville, Florida. |
| 0:12.8 | I brought up a quick diary today with some of the scans that I have observed for the Citrix |
| 0:19.8 | ADC and Citrix Gateway vulnerabilities. |
| 0:24.7 | Not a lot of scans so far, no actual exploit attempts, but there are definitely people |
| 0:30.3 | that are poking around and are looking for vulnerable systems. |
| 0:34.8 | So shouldn't be too long, and I pretty sure that the some of the bad guys |
| 0:40.1 | probably have exploits available there are a number of different security |
| 0:45.0 | companies and so that have exploits developed by now so the bad guys are |
| 0:50.3 | probably not far behind so patch patch, patch, patch. |
| 0:56.0 | And just to illustrate how dangerous these type of vulnerabilities are over New Year's, the |
| 1:03.0 | currency exchange Trevelex went down, they took their website down for a couple days. |
| 1:10.0 | Turned out the root cause here apparently was a vulnerability in the Pulse Secure SSL VPN. |
| 1:17.1 | A patch has been available for this vulnerability since April. |
| 1:22.3 | Now this is again, it is not the super straightforward one, but still all you have to do in order to |
| 1:28.7 | exploit the Pulse Secure SL VPN vulnerability is there is an arbitrary file read |
| 1:34.5 | vulnerability that allows you access to credentials. |
| 1:38.2 | With that you can then exploit command injection vulnerability using authentication. |
| 1:44.4 | So, relatively straightforward, but it takes a little bit of work. |
| 1:49.6 | So this is not the type of vulnerability that you see widely exploited across the internet, |
| 1:55.6 | but more in these little bit more targeted exploits. |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

