meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Wednesday, May 9th 2018

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News

4.9754 Ratings

🗓️ 9 May 2018

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. #MSFT Patch Tuesday; Office 365 Basestriker Vulnerability; wget cookie injection

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Wednesday, May 9th, 2018 edition of the Sansonet Storm Center's Stormcast. My name is Johannes Ulrich, and I'm recording from Indianapolis, Indiana.

0:12.4

Microsoft Patch Tuesday, of course, is at the top of the news. Today we got patches for a total of 67 different vulnerabilities,

0:23.6

two of which were already used in attacks in the wild.

0:29.1

The biggest one, CVE 2018, 81, 74.

0:34.4

This is the vulnerability that was announced by Chihu 360, a Chinese security company, a couple of weeks ago.

0:43.7

We had little details back then, other than that Chihu 360 has spotted use of the vulnerability in targeted attacks.

0:53.1

Turns out it's an Innet Explorer, actually a

0:56.0

visual basic script vulnerability. This vulnerability is not just exploitable in Inan Explorer itself,

1:04.0

but also in software that uses the underlying Innet Explorer rendering engine to render HTML.

1:12.9

The second vulnerability that has already been spotted in the wild is CVE 2018-812.

1:19.7

This is a privilege escalation vulnerability in Win 32K, so less of a problem, of course,

1:26.7

than the remote code execution vulnerability in Internet Explorer.

1:33.3

Included in this set of updates is also the fix for the Windows host compute service shim remote code execution vulnerability that was released last week.

1:45.0

This component was released early 2017 and it's used by HyperB in order to allow you to

1:52.0

launch Windows server containers using, for example, either Go or C Sharp.

1:58.0

This would be exploited when you're importing any containers, so probably less of a problem

2:04.6

than the other vulnerabilities. As kind of usual, most of the critical vulnerabilities affect

2:10.7

Internet Explorer. There's also a critical vulnerability in Microsoft's Exchange server. That's

2:17.2

memory corruption, not a lot of detail

2:19.3

here, but exploitation is less likely according to Microsoft. As far as patch priorities go,

2:26.9

well, I would say Internet Explorer wins this month. The other patch is not quite as critical,

2:33.5

but still something you should apply. And of course

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.