meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Wednesday, May 4th, 2022

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News, Technology

4.9696 Ratings

🗓️ 4 May 2022

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. Honeypot Updates; NanoSSL Vuln; uClibc DNS Bugs; AV Exploits; Trend Micro Flase Positive #GOSENTINELS

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Wednesday, May 4, 2020 edition of the Sands and its Storm Center's

0:06.9

Stormcast. My name is Johannes Ulrich, and I'm recording from Jacksonville, Florida.

0:13.4

Let me start today with a big shoutout to the teams of sands.edu students who took part in the National Cyber League competition.

0:24.7

First of all, we got number one in the individual player category as well as the number

0:30.7

one too, but that's not it. We also got number three and number five, I believe, and a total of 10 teams among the top 100

0:40.7

teams out of, I believe, something like a thousand teams and 3,000 plus individuals. So,

0:47.9

congratulations to all the sands.edu sentinels who participated in the competition.

1:01.4

And if you're using our Honeypot, first of all, thanks for contributing data, and we do have some updates, first of all, if you're not running it on a Raspberry Pi, but instead on an

1:07.8

Ubuntu virtual machine, please make sure you update because there is an important update

1:13.0

for the firewall rules without the update.

1:17.3

You will not actually report any data.

1:22.1

Now, we also updated the overall installation process,

1:27.0

the instructions for that. So if you had problems with

1:29.2

this in the past, actually a Raspberry Pi now has a new immature tool that makes it a lot easier

1:35.2

to do the initial setup. We also do have an Azure install. So if you want to run it in like

1:43.7

a free Azure virtual machine, you can do

1:47.1

this as well. AWS should also work. And please let me know if you run into any problems.

1:55.4

And then we got an update to the TLS storm or TIL Storm vulnerabilities that Armas talked about in March.

2:05.6

This time, TIL Storm 2 affects the same TILS library

2:11.2

that we had in TILS Storm 1, I guess,

2:14.6

nano-s-SSSl, but different types of devices.

2:18.6

The initial vulnerability mostly affected smart UPSs from a PC or Schneider.

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2025.