meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Stormcast Feb 3rd 2025: Automating Cyber Ranges; Deepseek Scams; PyPi Archived State; Medical Backdoors

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News, Technology

4.9696 Ratings

🗓️ 3 February 2025

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. SANS ISC Stormcast Feb 3rd 2025: Automating Cyber Ranges; Deepseek Scams; PyPi Archived State; Medical Backdoors

Transcript

Click on a timestamp to play from that location

0:00.0

Hello and welcome to the Monday, February 3, 2025 edition of the Sands and at StormSenter's

0:07.8

Stormcast. My name is Johannes Ulrich and I'm recording from Jacksonville, Florida.

0:13.9

If you have ever built a homelab, a cyber range, or maybe a little malware analysis system, aside from setting up the basic

0:23.2

systems around it, installing operating systems and the like, more of the challenges sometimes

0:27.8

is to adapt the particular lab to a specific task, like setting up domains, IP address,

0:34.8

and like, to kind of simulate a little internet, for example,

0:38.7

to act as command control servers for any malware that you're detonating inside the lab.

0:45.2

Well, Richard set up a number of PowerShell scripts to accomplish some of that.

0:51.1

He will write a few diaries about this. The first that he just published,

0:57.5

deals with DNS settings, how to configure host names and the like in this lab. It's a

1:05.6

PowerShell script. So for everybody here who likes to set this up in Windows, perfectly suited also to set up active directory and the like

1:13.6

to match whatever environment you would like to emulate.

1:17.1

Real neat little tool, so take a look at it

1:19.6

and provide any feedback to Richard.

1:22.7

And there's still quite a bit of talk about security issues around Deep Seek. I mentioned last week

1:29.3

how some of their backend databases leaked. Of course, one of the problems they're struggling with

1:35.6

is dealing with the increased search and traffic that they are receiving. They allege that

1:42.7

there may also be some denial of service attack involved.

1:46.2

Now, as a result, they apparently have sort of reworked their infrastructure a little bit

1:50.9

that led to some issues at least over the weekend, I noticed,

1:55.3

where they had a bad certificate.

1:58.0

The reason the certificate was marked as bad was it was actually issued by Huawei Cloud.

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2025.