meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Wednesday, November 8th, 2023

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News

4.9754 Ratings

🗓️ 8 November 2023

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. Discovery of Designated Resolvers; BlueNoroff macOS Malware; MSFT hardens MFA;

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Wednesday, November 8, 2020,

0:04.5

edition of the Sandcent Storm Center's Stormcast.

0:08.4

My name is Johannes Ulrich,

0:10.0

and today I'm recording from Jacksonville, Florida.

0:15.0

Wrote up a quick new addition to DNS

0:18.2

that you may be seeing in your networks. It was included with the update

0:24.9

to iOS 17 apparently and also can be enabled in Windows. The extension here is the discovery

0:33.5

of designated resolvers or DDR and thanks to Twitter user HQuest for pointing this out to me.

0:42.8

The idea behind this protocol is that it allows clients to automatically discover any resolvers

0:50.7

that offer DNS over TLS, DNS over HDPS, or DNS over Quick.

0:57.2

The way this works is that you will see requests for underscore DNS.resolver.orga.

1:04.1

Resolver.

1:04.5

Arpa is reserved for this particular feature, and then a resolver that your client is using

1:12.5

may respond essentially with instruction

1:15.5

telling it how to use this reserver

1:17.8

or an other resolver for that matter

1:20.7

using one of these more secure protocols.

1:24.7

The record being used here is a service binding record

1:27.2

or SVCB record,

1:29.3

a little bit sort of like HTTP records in that it'll tell you what application layer protocol

1:34.8

to use, what port the Resolver is listening on, and then in the case of DNS over HTTP,

1:41.8

it will also basically tell you the URL to then access and where to add

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.