ISC StormCast for Wednesday, June 23rd, 2021
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 23 June 2021
⏱️ 6 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello, welcome to the Wednesday, June 23rd, 2021 edition of the Sandstone Storm Center's Stormcast. My name is Johannes Ulrich. |
| 0:09.9 | And then I'm recording from Jacksonville, Florida. |
| 0:13.7 | Quick note today from Jan about fishing and how the bad guys are trying to decrease the chances of a particular fishing email |
| 0:23.0 | being reported to a security or system administrator. In the first example, and that's actually |
| 0:29.9 | quite common, also seen this in legitimate emails, of course, which may be the reason why |
| 0:36.7 | this works relatively well. The attacker |
| 0:40.4 | will just add a paragraph at the end suggesting that, well, it's possible that you received |
| 0:46.1 | the email by mistake, and if so, then pretty much just ignore it, or hey, maybe even click |
| 0:52.4 | on this link. |
| 1:01.9 | So a victim that doesn't recognize the charge and doesn't necessarily believe a refund is necessary, will more likely believe that this email was just a simple mistake and ignore it. |
| 1:09.1 | Now, another phishing email that Jan came across, and that one was |
| 1:12.7 | actually written in Hungarian, just added a simple sentence. Hey, your system administrator |
| 1:18.4 | told you not to report abuse. Pretty simple statement and of course that's one I don't really |
| 1:25.4 | believe will make a big difference but who knows |
| 1:28.6 | maybe the bad guys have figured out here something that I'm not aware of. Jan is spending |
| 1:35.2 | quite a bit of time with fishing emails and of course typically the ones that work are the ones |
| 1:40.3 | that use well-known respected and trusted cloud services to host their fishing campaigns, |
| 1:47.0 | and then also the ones that will include, for example, logos and other identifiers for the |
| 1:54.3 | targeted company. |
| 1:57.1 | And Solotype ran into six different Pi Pi libraries that are likely trying to impersonate |
| 2:06.6 | the quite popular Mad Lip package. |
| 2:10.8 | These libraries are more or less typos around Matl like merit lip and p. |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

