Threat Level: green Handler on Duty: Johannes Ullrich

SANS ISC: More About #Excel Macros; Bose SpyPhones; Own/NextCloud Buggy Bugreports - SANS Internet Storm Center More About #Excel Macros; Bose SpyPhones; Own/NextCloud Buggy Bugreports


Sign Up for Free!   Forgot Password?
Log In or Sign Up for Free!
podcast logo

ISC StormCast for Thursday, April 20th 2017

A daily summary of network and system security news from the SANS Internet Storm Center
Author:Johannes B. Ullrich, Ph.D.
Created: Thursday, April 20th 2017
Length: sh: /usr minutes
Today's Headline: More About #Excel Macros; Bose SpyPhones; Own/NextCloud Buggy Bugreports

If you like this podcast, then please consider telling others about it. Use this button to Tweet about this episode: click here. Errors? Corrections? Complaints? Player Problems? Please let us know here: https://isc.sans.edu/contact.html

Plain HTML5 Player
Fancy Player (with skip back/forward)

Show Notes

Hunting and Analyzing Malicious Excel Files
https://isc.sans.edu/forums/diary/Hunting+for+Malicious+Excel+Sheets/22322/

Bose May Be Spying on Listeners
https://www.scribd.com/document/345620278/Bose-Privacy-Complaint

Microsoft No-Password Sign In
https://blogs.technet.microsoft.com/enterprisemobility/2017/04/18/no-password-phone-sign-in-for-microsoft-accounts/

Owncloud/Nextcloud Bug Reports Include Passwords
https://blog.hboeck.de/archives/885-Passwords-in-the-Bug-Reports-OwncloudNextcloud.html

Fuzzing Used to Find a Tcpdump Vulnerability
https://www.softscheck.com/en/identifying-security-vulnerabilities-with-cloud-fuzzing/

DNS Homograph Detection
https://github.com/dutchcoders/homographs

For Friday's (and other upcoming webcasts), see
https://www.sans.org/webcasts

Discussion

Login here to join the discussion.