ISC StormCast for Wednesday, March 23rd, 2022
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 23 March 2022
⏱️ 7 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello, welcome to the Wednesday, March 23rd, 2020 edition of the Sansonet Storm Center's Stormcast. |
| 0:08.2 | My name is Johannes Ulrich, and I'm recording from Jacksonville, Florida. |
| 0:13.9 | Yesterday, I already briefly talked about the statement by President Biden about the possible cyber attacks from Russia. |
| 0:24.3 | Well, wrote up some of the thoughts in a post this morning, |
| 0:29.5 | so nothing really that I didn't fundamentally mention in yesterday's podcast, |
| 0:34.7 | but if you want the little bit more elaborate written version, well, check |
| 0:38.9 | the link in the show notes. |
| 0:42.3 | And talking about Russia Cyclops Blink botnet that's commonly associated with the Russian |
| 0:49.8 | cyber gang Sandworm does now also go after Aces Routers. |
| 0:56.3 | Initially, it was more seen going after |
| 0:58.9 | watchguard firewalls, but looks like they're |
| 1:02.1 | now also expanding to some of the consumer products. |
| 1:06.6 | Aces now has come up with some guidance that you should follow if you believe that you got affected by this particular malware. |
| 1:16.7 | Essentially, what it comes down to is reset your router to factory settings. |
| 1:22.4 | Do apply the latest firmware and then make sure that you don't use the default password and that you |
| 1:29.8 | deactivate any remote access to the device, which should be the default setting and |
| 1:35.8 | typically requires the advanced settings in order to change it. It should have ever be noted that |
| 1:42.6 | the latest firmware doesn't necessarily fix the |
| 1:45.5 | vulnerability. That's still a little bit unclear what vulnerability or vulnerabilities are |
| 1:50.4 | actually being exploited here, but just disabling remote management should be sufficient in |
| 1:58.0 | order to prevent reinfection and installing the latest firmware is your best bet |
| 2:04.3 | in getting rid of any remnants of the matter. So even if your router is end of life and you |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

