Threat Level: green Handler on Duty: Brad Duncan

SANS ISC: SANS Daily Network Security Podcast (Stormcast) for Monday, November 24th 2014 - SANS Internet Storm Center SANS Daily Network Security Podcast (Stormcast) for Monday, November 24th 2014


Sign Up for Free!   Forgot Password?
Log In or Sign Up for Free!

Sprear Phishing Works Well! Hikvision: Broken and Dangerous DVRs don't keep you safe; MSFT and Sandw

SANS Daily Network Security Podcast (Stormcast) for Monday, November 24th 2014
00:00

My Next Class

Intrusion Detection In-DepthMadridMar 25th - Mar 30th 2019
Defending Web Applications Security EssentialsSan DiegoMay 9th - May 14th 2019

… more classes

Sprear Phishing Works Well! Hikvision: Broken and Dangerous DVRs don't keep you safe; MSFT and Sandwort: Missed Chances; Paypal patches slowly

1 out of 5 spear phishing emails successful
https://deepsec.net/speaker.html#PSLOT157

Multiple remote vulnerabilities in Hikvision DVRs
https://community.rapid7.com/community/metasploit/blog/2014/11/19/r7-2014-18-hikvision-dvr-devices--multiple-vulnerabilities

MSFT Overlooked "Sandworm" vulnerability in earlier patches
http://h30499.www3.hp.com/t5/HP-Security-Research-Blog/SandWorm-s-target-A-patch-history-of-Object-Packager/ba-p/6675618#.VHJ8QIsXkzB

PayPal Takes 18 Months to Fix Arbitrary Code Execution Flaw
http://vulnerability-lab.com/get_content.php?id=936

ICMP Redirect Attacks Documented in the Wild
http://blog.zimperium.com/doubledirect-zimperium-discovers-full-duplex-icmp-redirect-attacks-in-the-wild/
Get a free ISC sticker (login required):
https://isc.sans.edu/sticker.html
Spotify spotify logo

Discussion

New Discussions closed for all Podcasts older than two(2) weeks
Please send your comments to our Contact Form

Intrusion Detection In-DepthMadridMar 25th - Mar 30th 2019
Defending Web Applications Security EssentialsSan DiegoMay 9th - May 14th 2019
Intrusion Detection In-DepthSan AntonioMay 28th - Jun 2nd 2019
Defending Web Applications Security EssentialsMunichJul 1st - Jul 6th 2019
Intrusion Detection In-DepthLondonJul 8th - Jul 13th 2019
Intrusion Detection In-DepthBostonJul 29th - Aug 3rd 2019
Defending Web Applications Security EssentialsSan JoseAug 12th - Aug 17th 2019
Defending Web Applications Security EssentialsBrusselsSep 2nd - Sep 7th 2019
Intrusion Detection In-DepthLondonSep 23rd - Sep 28th 2019