ISC StormCast for Wednesday, October 5th, 2022
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
SANS ISC Handlers
4.9 • 754 Ratings
🗓️ 5 October 2022
⏱️ 5 minutes
🧾️ Download transcript
Summary
Transcript
Click on a timestamp to play from that location
| 0:00.0 | Hello and welcome to the Wednesday, October 5th, 2020 edition of the Sansonet Storm Center's Stormcast. |
| 0:08.0 | My name is Johannes Ulrich, and today I'm recording from New York City, New York. |
| 0:14.0 | In today's diary by Jesse, we see another example of a fishing site taking advantage of |
| 0:19.8 | client side technologies and cloud services |
| 0:22.2 | to avoid having to maintain the larger footprint |
| 0:25.0 | necessary to run sort of more traditional, |
| 0:27.9 | complete dynamic website with server side code. |
| 0:32.4 | The alternative is, of course, |
| 0:34.0 | to use JavaScript on the client |
| 0:35.3 | and then to have various APIs to work with for you. |
| 0:39.8 | In the example provided by Jesse, the phishing page uses JavaScript to connect to Telegram |
| 0:46.5 | and then to send data to an adversary's telegram address. |
| 0:52.2 | The phishing page itself is hosted at Workers.Dev. |
| 0:56.9 | That's actually a Cloudflare service that can be used to host serverless code. |
| 1:02.1 | Between the use of Workers.Depfregantly used legitimate site and telegram fishing attacks |
| 1:10.0 | are difficult to stop as they use fairly |
| 1:13.1 | common and legit services so they don't really stick out in your network traffic. |
| 1:20.2 | And I mentioned yesterday how the rule Microsoft published initially to block exploitation of |
| 1:26.9 | the new exchange vulnerabilities wasn Well, it wasn't |
| 1:30.0 | sufficient. It had this ad simple in there that was really too specific and did allow some |
| 1:36.5 | working exploits. Microsoft now released an updated rule, removing the ad simple from the |
| 1:42.6 | original rule. The new rule will be applied automatically |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2026.

