4.9 • 696 Ratings
🗓️ 4 February 2025
⏱️ 6 minutes
🧾️ Download transcript
Click on a timestamp to play from that location
0:00.0 | Hello and welcome to the Tuesday, February 4th, |
0:03.2 | 2025 edition of the Sands and its Storm Center's Stormcast. |
0:08.4 | My name is Johannes Ulrich, and I'm recording from Jacksonville, Florida. |
0:13.6 | The day today wrote up a little problem that we actually keep having with this podcast |
0:18.7 | whenever I posted to YouTube, and that's spam. |
0:22.0 | But the spam is a little bit different in this case. |
0:27.0 | The spam basically, as so often, says how nice the video is, |
0:32.2 | but then states that they have a question that they have a crypto coin wallet, |
0:37.4 | and they would like to transfer the money |
0:40.1 | out of that crypto coin wallet. And then they give you the seat phrase for the crypto coin wallet. |
0:47.5 | Now, what surprised me when I saw these was why did they give me the seat phrase? The seat phrase |
0:53.6 | is essentially the secret |
0:55.3 | key that you should never leak for your wallet. DDA dove into this deeper and also found |
1:03.5 | a couple other write-ups about this particular spam. What happens here is, first of all, the seed |
1:10.2 | phrase is just human readable, easier to |
1:14.7 | memorize a way to express the secret key. So yes, you can turn that into the secret key. The problem, |
1:23.3 | however, in this case is that this wallet is protected with two secret keys and the secret key |
1:31.6 | they're giving you is not authorized to actually transfer money out of the wallet. |
1:38.4 | So what they're attempting here to do is for you to get greedy, attempt to transfer the money |
1:43.9 | out. In order to transfer |
1:45.7 | money out, you first have to deposit a little bit of cryptocurrency into the wallet in order to |
1:52.6 | pay for the transaction fee. And that's what they're after. They wait for you to actually deposit |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2025.