4.9 • 696 Ratings
🗓️ 7 July 2025
⏱️ 6 minutes
🧾️ Download transcript
Click on a timestamp to play from that location
0:00.0 | Hello and welcome to the Monday, July 7, 2025 edition of the Sands and then at Storm Center's |
0:07.1 | Stormcast. My name is Johannes Ulrich, and this episode brought you by the Sands.edu undergraduate |
0:13.7 | certificate program in Applied Cybersecurity is recorded in Jacksonville, Florida. |
0:20.8 | Well, to start out with a couple couple interesting ZH Telnet usernames |
0:24.4 | that I observed the last couple days showing up in our honeypots, |
0:28.9 | first of all, well, not a chance. |
0:31.4 | This is real. |
0:32.6 | That's the username, I suspect this username is selected |
0:36.2 | in order to actually fingerprint honeypots. |
0:39.6 | Honeypots that we are using based on cowrie will occasionally sort of randomly allow any |
0:46.8 | credential to work. This prevents people from basically just using some simple credentials |
0:53.7 | and also, well, eventually we do want actually attackers to log. prevents people from basically just using some simple credentials. |
1:00.4 | And also, well, eventually we do want actually attackers to log in to see what they're up to. |
1:07.1 | And then, of course, attackers can use that against us by using these obviously non-existing usernames and password combinations. |
1:09.6 | And if they work, well, there's a good chance |
1:12.5 | that they are connected to a honeypot. Other notable usernames that I've seen is one Skeda admin |
1:21.3 | that apparently is related to the Rapid Skata systems. |
1:32.2 | On Macedon user John Timis also confirmed that, |
1:36.2 | pointing to the relevant documentation at Rapid Skata. |
1:41.1 | I originally wasn't able to find that particular username, |
1:44.1 | but there are also others, of course, like admin 1,345 and such that are |
1:46.5 | being used by Rapid Skata. Now, the next set of usernames is GPU-001, GPU-0-0-0-2. |
... |
Please login to see the full transcript.
Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.
Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.
Copyright © Tapesearch 2025.