meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Wednesday, May 11th, 2022

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News, Technology

4.9696 Ratings

🗓️ 11 May 2022

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. Microsoft Patch Tuesday; Adobe Updates; npm foreach;

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Wednesday, May 11, 2020 edition of the Sandcent Storm Center's Stormcast.

0:08.7

My name is Johannes Ulrich.

0:10.5

And today I'm recording from Jacksonville, Florida.

0:14.8

Well, it's Microsoft Patch Tuesday, and with that we got updates for 74 75 vulnerabilities depending on how you count them.

0:24.6

Three of these vulnerabilities have been known prior to patch Tuesday and one of the three or one of the 75 has already been actively exploited.

0:36.6

Now the one that's already actively exploited, of course,

0:40.4

is getting a lot of news coverage here,

0:42.7

and it is a Windows LSA spoofing vulnerability.

0:46.8

So essentially, it does allow NetHacker to bypass authentication.

0:52.4

Now, Microsoft stated that while overall the CVS score is 8.1 and important,

0:59.2

this is a critical vulnerability if you're still using NTLM hashes in order to authenticate,

1:05.9

which of course is something that you shouldn't be doing anymore in the first place. In general, the vulnerability

1:11.8

does enable relay attacks. NetHacker does have to have a machine in the middle position

1:18.1

in order to exploit the vulnerability. Certainly patch it, don't delay patching, but

1:25.6

important is the right ranking for this particular

1:30.7

vulnerability, in my opinion.

1:32.7

And we do have two critical vulnerabilities that deserve special mentions.

1:36.8

One is a remote code execution vulnerability affecting the Windows network file system.

1:43.2

That's CVE 2020-26937. Last month, we did have a similar

1:51.3

vulnerability for NFS. Same researchers discovered it, so the two are likely related. NFS is not really used

2:00.4

much in Windows networks typically so that somewhat lessens the impact

2:05.8

here, but CVSS score is 9.8.

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2025.