ISC StormCast for Wednesday, May 17th 2017
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 17 May 2017
⏱️ 6 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello, welcome to the Wednesday, May 17th, 2017 edition of the Sands and the Storm Center's |
| 0:06.3 | Stormcast. My name is Johannes Ulrich, and I'm recording from San Diego, California. |
| 0:12.9 | If you received some odd emails from DocuSign this weekend, then you're not alone. |
| 0:21.6 | DocuSign is a company that simplifies the electronic signing of legal documents, |
| 0:28.6 | and the emails claim to link to a document that you are asked to sign, |
| 0:34.6 | but instead of an invoice or similar document that you expect to show you will receive a |
| 0:42.3 | Word document with the usual macro malware. |
| 0:47.3 | In itself, that would not be so special given that systems like this are certainly often abused and impersonated |
| 0:57.0 | by fishing campaigns. However, in this case, the email were even more plausible than usual |
| 1:05.0 | because miscreants actually managed to breach a system of DocuSign and steal customer emails. |
| 1:12.6 | So the result is that these phishing emails actually arrived in the inboxes of actual |
| 1:18.6 | DocuSign customers, which of course were accustomed to these emails, and then more likely |
| 1:24.6 | going to click on them. |
| 1:30.3 | According to DocuSign, only emails were stolen. |
| 1:34.8 | Of course, docine does deal a lot with confidential documents that people are transmitting via their systems. |
| 1:39.5 | Last week, I talked about how certain HP laptops |
| 1:44.1 | that use an audio chip from Connects and |
| 1:47.6 | log all keystrokes. |
| 1:50.1 | Apparently this was a debug functionality that was left behind in the audio driver, but the |
| 1:58.1 | effect was that all keystrokes, including usernames, passwords that the user may |
| 2:03.5 | have entered, were logged in clear text files. HP now released an update to the driver |
| 2:11.2 | that removes this key logging functionality. Actually, it turns out this was an update to an update. |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

