ISC StormCast for Wednesday, November 30th, 2022
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 30 November 2022
⏱️ 7 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello and welcome to the Wednesday, November 30th, 2020 edition of the Sansonet Storms, Stormcast. |
| 0:08.0 | My name is Johannes Ulrich, and today I'm recording from Jacksonville, Florida. |
| 0:13.0 | Today's diary is about linked in bots. Well, at least I think it's bots what we are dealing with, but sometimes, and that's in |
| 0:23.2 | part what is about, it's hard to tell if you're dealing with actual people, with bots, or something |
| 0:29.3 | in between, which are often actual people who basically just copy-paste profiles. What makes |
| 0:37.0 | you sort of interesting is that these profiles, bots, individuals happen |
| 0:43.7 | to try to connect to people in the information security industry. |
| 0:49.7 | So in my opinion, it's likely an attempt to map out different relationships likely. |
| 0:59.3 | The profiles of these individuals are not really anything that's related to information |
| 1:06.1 | security, anybody that you would think would sort of reach out to a larger number of information security |
| 1:13.0 | professionals. |
| 1:14.4 | This also still very much sort of work in progress. |
| 1:17.6 | So if you run into any connection requests that do look suspicious, I would be interested |
| 1:22.6 | in hearing about it and figuring out if this is sort of a more coordinated effort or really |
| 1:29.7 | just sort of some spammer collecting connections here in order to then eventually advertise |
| 1:36.5 | some kind of service. As usual, the rule of thumb applies. If you post something on social |
| 1:42.2 | media, assume it to be public. |
| 1:45.2 | Social media are not built and not meant to exchange information with sort of trusted groups. |
| 1:52.5 | It's really medium to very effectively reach a large number of readers, users, customers, |
| 2:04.7 | and use it like that, don't use it sort of as a replacement for some kind of instant messaging or other more direct channel. And this, of course, |
| 2:12.6 | is not just a LinkedIn issue that applies to all of these social media sites. |
| 2:21.0 | And SISA added CVE 2021 35587. That's an Oracle Fusion middleware vulnerability to its |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

