meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Wednesday, November 16th, 2022

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News

4.9754 Ratings

🗓️ 16 November 2022

⏱️ 5 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. Packet Tuesday; Mastodon Bug; Zendesk SQLi; EV Charger Security;

Transcript

Click on a timestamp to play from that location

0:00.0

Hello and welcome to the Wednesday, November 16th, 2020 edition of the Sandsenet Storm Center's Stormcast. My name is Johannes Ulrich and today I'm recording from Jacksonville, Florida.

0:14.0

Start a little bit a new thing today and calling it a packet Tuesday. I have been floating the idea for a while,

0:21.8

sort of on social media,

0:23.4

and the idea of Packet Tuesday is to deep dive in a brief video

0:29.3

into a particular network packet feature.

0:32.7

The first one that I picked for today was these international domain names and how they're encoded

0:40.1

with puny code in DNS. So that'll be the first packet Tuesday and there will be one each Tuesday

0:47.4

going forward. If you have any packet that you're interested in, any feature, please let me know.

0:53.4

And of course, this is brand new, so any feedback is highly appreciated.

0:59.2

And talking about social media with Mastodon becoming quite popular, maybe even more popular

1:05.3

than Twitter right now when it comes to sort of the Infosec news scene.

1:16.0

The Maston platform is, of course, also receiving more scrutiny.

1:20.2

One example is a vulnerability found by Portsvicker.

1:31.9

Portsvicker, of course, the company behind the famous Burb proxy did discover an interesting vulnerability that allowed an attacker to essentially inject an invisible HTML form that then was used to harvest credentials.

1:40.1

The root cause here was a cross-site scripting vulnerability that allowed injection of HTML.

1:45.5

Now, often when we are talking about cross-side scripting, we're thinking about a lot of JavaScript.

1:51.4

Here, it's really more about HTML in the sense that an HTML form was injected.

1:59.1

And then the HTML form with a username and password field, well,

2:03.8

the browser would automatically refill the credentials if you're using a password manager.

2:10.1

And then the user was tricked into submitting the form by actually clicking on the little

2:15.7

ellipsis icon. So it wasn't 100% automatic.

2:20.0

Portsmaker did demonstrate the vulnerability with the InfoSec Exchange

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.