ISC StormCast for Wednesday, November 27th 2019
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 27 November 2019
⏱️ 6 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello, welcome to the Wednesday, November 27th, 2019 edition of the Santernat Storm Center's |
| 0:06.3 | Stormcast. My name is Johannes Olerich, and today I'm recording from Jacksonville, Florida. |
| 0:13.3 | You got a quick diary from Jan today about fishing, and what he did is try to follow up with some |
| 0:20.6 | phishing emails to see how far he was able to get with them. |
| 0:24.8 | In at least one case, he was able to get their bank account that they were using in order to have Jan transfer money into the account. |
| 0:34.9 | He managed to have that account shut down. Now, one thing |
| 0:39.4 | it was a little bit surprising was that the email address used by this particular fissure was |
| 0:44.9 | active for at least three months. So that apparently is a lot more difficult to shut down |
| 0:52.3 | or does survive quite a bit of fishing attempts. |
| 0:58.1 | And HP Enterprise is warning off an interesting bug in its SAS solid-state drives. |
| 1:06.1 | And the problem here is apparently a firmware issue that causes these drives to fail after 32,768 hours. |
| 1:16.7 | So that's about three years and nine months, I believe. |
| 1:21.0 | What matters here is the time the drive was actually powered up and yes sounds very much like a signed unsigned issue given the number |
| 1:30.5 | of hours. |
| 1:31.8 | The real problem here is if you're using multiple of these drives in a rate array and you |
| 1:37.6 | power them all up at the same time, they will all fail at the same time, which of course |
| 1:43.6 | is devastating in this particular use case. |
| 1:48.2 | Apply the firmware update, depending on how long you own these drives for, you may still have some time left. |
| 1:56.1 | And Twitter is reporting that a software development kit maintained by one audience is apparently |
| 2:03.3 | used to access users Twitter accounts. |
| 2:08.3 | Now, this software development kit is used in various applications. |
| 2:12.4 | The developer after the application may not necessarily be aware that this software |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

