meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Stormcast, Jan 16, 2025: Critical Vulnerabilities and Cybersecurity Updates You Need to Know

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News, Technology

4.9696 Ratings

🗓️ 16 January 2025

⏱️ 9 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. SANS ISC Stormcast, Jan 16, 2025: Critical Vulnerabilities and Cybersecurity Updates You Need to Know

Transcript

Click on a timestamp to play from that location

0:00.0

Hello and welcome to the Thursday, January 16th, 2020-5 edition of the Sands Internet Storm Center's

0:08.2

Stormcast. My name is Johannes Ulrich, and today I'm recording from Jacksonville, Florida.

0:14.8

Iging today wrote up an observation he found in our first scene URL list.

0:21.9

It's an attack against Netgear routers.

0:24.4

Now, you probably have seen these attacks quite a bit.

0:28.3

Usually that next underscore file equals netgear.cfg is sort of giving it away that it's

0:34.5

this particular vulnerability.

0:36.2

They're exploiting in this case.

0:38.5

They are installing Monero miner on the router. The real question that the Eging is asking here,

0:45.6

why is this still a thing, given that the vulnerability is 12 years old, even if you had a

0:52.9

router, it was never patched, highly likely that, well, it didn't survive the last 12 years old. Even if you had a route, it was never patched. Highly likely that, well, it

0:56.1

didn't survive the last 12 years and got sort of patched by a power search. The problem here

1:04.0

apparently is that even though this vulnerability was discovered back in May of 2013.

1:15.4

There was no CVE entry for it until last year.

1:22.6

And even earlier this year, there was just sort of an update to this particular CVE entry, which probably sort of renewed some of the interest in this vulnerability, even though

1:28.7

and Eging is showing the craft, you have reports from back early last year, like February

1:37.8

March there was an increase, and since then it has been slightly increasing, but at a relatively high level.

1:47.2

Well, and today, of course, it's reboot Wednesday,

1:50.6

and with that, we do have a couple things to catch up on

1:55.0

that didn't make it into yesterday's episode.

1:58.4

One issue was brought up during Schmukon last weekend. Truffle

2:03.9

secured, in particular Dylan Irie here, published a blog post about this, and that's a weakness

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2025.