SS-NEWS-085: Deepfake Hysteria, IIS Server Logs as C2!

Episode 85 November 07, 2022 00:29:17
SS-NEWS-085: Deepfake Hysteria, IIS Server Logs as C2!
Security Serengeti
SS-NEWS-085: Deepfake Hysteria, IIS Server Logs as C2!

Nov 07 2022 | 00:29:17

/

Show Notes

Several short stories for your consideration on this fine November day.

First, Sophos thinks we're on the hysteria part of the FUD Curve where Deepfakes are concerned, and we agree (as if our opinion mattered).  Then we discuss Bitcoin Mining Firms possibly going bankrupt.  Not really security related, but hey, it was interesting.  The Samsung is introducing Maintenance Mode for when you have to hand your phone over to be repaired!  Finally, the most interesting, the use of IIS Web Logs for command and control... this is amazing.  Unfortunately, the article didn't have a ton of information, but it's a really cool new method!

Article 1 - Phishing works so well crims won't bother with deepfakes, says Sophos chap

Article 2 - World’s largest Bitcoin mining firm Core Scientific on the verge of insolvency

Article 3 - Maintenance Mode aims to keep phone data private during repairs

Article 4 - Hackers use Microsoft IIS web server logs to control malware
Supporting Article(s):
Cranefly Cyberspy Group Spawns Unique ISS Technique

If you found this interesting or useful, please follow us on Twitter @serengetisec and subscribe and review on your favorite podcast app!

Other Episodes

Episode 51

March 07, 2022 01:04:42
Episode Cover

SS-BOOK-51: Book Review - Daemon by Daniel Suarez

In this episode we review and discuss a book that was nominated to the Cybersecurity Canon, but not accepted - Daemon by Daniel Suarez....

Listen

Episode 24

August 29, 2021 00:35:44
Episode Cover

SS-NEWS-24: Amazon monitoring keystrokes, CAPTCHA's hiding Cred stealing

In this week's episode, we discuss Amazon tracking keystrokes, attacker's using CAPTCHA's to hide credential stealing sites, and a bonus article that we decided...

Listen

Episode 75

August 29, 2022 00:31:56
Episode Cover

SS-NEWS-075: Criminals turning from selling drugs to cybercrime?

In this episode, we discuss street criminals turning from drug related crime to fraud and potentially cybercrime, and PyPI's issues with malicious packages. Article...

Listen