ISC StormCast for Wednesday, July 13th, 2022
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 13 July 2022
⏱️ 6 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello and welcome to the Wednesday, July 13th, 2000, 22 edition of the Sands and its Storm Center's Stormcast. My name is Johannes Ulrich. |
| 0:10.9 | And today I'm recording from Sands Fire here in Washington, D.C. |
| 0:16.6 | First of all, thanks to everybody who showed up to the keynote today. |
| 0:21.1 | If you missed it or if you missed the live stream, |
| 0:24.8 | the recording should be available shortly. |
| 0:28.5 | And, well, I'll link to the recording, |
| 0:30.5 | but you probably can get to it via the link that I posted for the live webcast. |
| 0:38.3 | But of course, top of the news today is Microsoft's Patch Tuesday |
| 0:42.8 | and Microsoft released patches for 86 vulnerabilities, |
| 0:47.8 | four of which are rated critical. |
| 0:50.0 | None has previously been disclosed, |
| 0:52.4 | and there is one vulnerability that has already been exploited. |
| 0:57.6 | This already exploited vulnerability is a privilege escalation vulnerability |
| 1:02.7 | affecting the client server runtime subsystem in Windows. |
| 1:08.6 | I believe we have had several similar vulnerabilities in CSRSS before. Not terribly exciting, |
| 1:16.6 | in my opinion, something you definitely do want to patch, but nothing you should really panic about. |
| 1:23.3 | There are other approach escalation vulnerabilities that are being addressed here. one other one also in CSRSS that is also rated as important as typically Microsoft rates these approach escalation vulnerabilities. |
| 1:39.2 | One interesting feature of this month patch Tuesday is a large number of |
| 1:44.3 | approach escalation vulnerabilities |
| 1:45.7 | being fixed in Azure |
| 1:47.9 | site recovery. This is a service |
| 1:50.0 | that Microsoft offers in order to make it easy |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

