ISC StormCast for Wednesday, March 1st 2017
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 1 March 2017
⏱️ 5 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello, welcome to the Wednesday, March 1st, 2017 edition of the San Sanct Storm Center's Stormcast. |
| 0:07.1 | My name is Johannes Ulrich, and today I'm recording from Jacksonville, Florida. |
| 0:12.2 | Today we got two Amazon cloud-related items to start out with. |
| 0:16.9 | First, a guest diary by Remke Verhoeff. |
| 0:20.5 | Now, what he did was he set up a little web server within |
| 0:24.5 | Amazon's cloud and then just restarted it every 10 minutes for four months at the time. During |
| 0:32.4 | that time, he was able to intercept a large number of requests that were not destined to any domains |
| 0:40.3 | that he ran on that web server. |
| 0:43.3 | Apparently what was happening there was that Amazon is reusing IPV4 addresses rather quickly |
| 0:49.9 | within its cloud. |
| 0:51.6 | That's a common problem in that many cloud providers do have a shortage |
| 0:56.2 | of IPV4 addresses and then requests of course that were destined for a prior user of that |
| 1:03.7 | IP address are still being received. Many of the requests that he received came via Amazon's |
| 1:10.7 | Cloudfront service, which is a proxy service that Amazon offers to its customers. |
| 1:17.4 | Also, some of these requests really didn't make sense. |
| 1:20.8 | For example, he had requests from a Vietnamese ISP that went via multiple proxy hops, some of them the UK Department of Defense, |
| 1:31.2 | and ended then up in his little honeypot via Amazon Cloudfront. |
| 1:37.2 | So some of those details are still work in progress, but Remko did notify Amazon and Amazon |
| 1:43.7 | did implement what they are calling a cool down procedure |
| 1:47.2 | of 4 IPV4 addresses, so essentially to avoid reusing IPV4 addresses too quickly. But in other Amazon |
| 1:56.7 | cloud news, Amazon also had a pretty significant outage in its S3. |
| 2:02.6 | That's the simple storage service. |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

