Tenable Research Podcast

Tenable Research Podcast

By Tenable ResearchNewsTechnologyTech News
Download on the App Store

Tenable Research Podcast episodes

  • Hold the Door - VPN Vulnerabilities Unlock Entry to Your Network

    On this edition of the Research podcast, we talk to Satnam Narang and Claire Tills about the Security Response Team’s recent research blog around SSL VPN vulnerabilities. That blog looked back at how three particular flaws in major VPNs are frequently exploited, so we look at when these vulnerabilities were disclosed, what the impact of them are, who has been attempting to exploit them and who the targets have been.


    Show references:


    • Hold the Door: Why Organizations Need to Prioritize Patching SSL VPNs 
    • Zero-Day Vulnerability in SonicWall Secure Mobile Access (SMA) Exploited in the Wild 


    Follow along for more from Tenable Research:

    • Subscribe to the blog
    • Follow Tenable’s Zero Day team on Medium
    20 min
  • Light Patches, Router Issues and a Year of Zerologon

    This month we look at new blogs from Tenable’s security response team, including on a year of Zerologon, vulnerabilities in Microsoft Exchange Servers and Pulse Secure, and a widely spread flaw in wifi routers which could affect thousands of users globally.


    Show References


    • One Year Later: What Can We Learn from Zerologon? 
    • Microsoft’s August 2021 Patch Tuesday Addresses 44 CVEs 
    • Remote Code Execution Patch Bypass in Pulse Connect Secure 
    • ProxyShell: Attackers Actively Scanning for Vulnerable Microsoft Exchange Servers 
    • Bypassing Authentication on Arcadyan Routers with CVE-2021–20090 and rooting some Buffalo 


    Follow along for more from Tenable Research:

    • Subscribe to the blog
    • Follow Tenable’s Zero Day team on Medium
    46 min
  • Black Hat 2021 and the Return to Conferences

    As the first major security conference prepares to take place, Tenable's chief security strategist Nathan Wenzler talks to Dan Raywood about what the conference scene could look like going forward, what people can expect from the experience and what virtual and in person delegates will be looking to gain from attending.

    Follow along for more from Tenable Research:

    Subscribe to the blog

    Follow Tenable’s Zero Day team on Medium

    31 min
  • Nightmare, Ransomware, Patches Everywhere

    In this episode we talk to security researchers Claire Tills and Satnam Narang on a busy month in cybersecurity headlines, from an MSP facing a major ransomware situation, to Microsoft’s attempts to keep up with the PrintNightmare issue, and evaluating July’s bumper Patch Tuesday offering. 


    Multiple Zero-Day Vulnerabilities in Kaseya VSA Exploited to Distribute REvil Ransomware

    Proof-of-Concept Leaked for Critical Windows Print Spooler Vulnerability

    Microsoft Releases Out-of-Band Patch for PrintNightmare Vulnerability in Windows Print Spooler

    Microsoft’s July 2021 Patch Tuesday Includes 116 CVEs


    Follow along for more from Tenable Research:

    Subscribe to the blog

    Follow Tenable’s Zero Day team on Medium

    44 min
  • Back to Reality, Ransomware and Patch Tuesday

    Welcome back to the Tenable Research Podcast. In this new episode we look back at June’s Microsoft patches, and ask Tenable staff research engineer Satnam Narang what he feels the reasons are for the number of patches generally decreasing both monthly and annually. 

    We are also joined by director of product management Ray Carney, as we look into the increase of ransomware in 2021, what have been the causes of this increase, and what the threat landscape looks like currently. 


    Show References:

    https://www.tenable.com/blog/microsoft-june-2021-patch-tuesday-49-cves-cve-2021-31955-cve-2021-31956-and-cve-2021-33742 

    https://www.tenable.com/blog/cve-2021-21985-critical-vmware-vcenter-server-remote-code-execution 


    Follow along for more from Tenable Research:

    Subscribe to the blog

    Follow Tenable’s Zero Day team on Medium


    46 min
  • Learning from a No Good, Very Bad Year

    As always, we discuss the latest vulnerability news and the first Patch Tuesday of the year. Then, the Security Response Team walks us through their 2020 Threat Landscape Retrospective report. The team did the tough work of looking back at everything that happened in 2020 and deriving some key lessons we can all take into 2021.

    Read the full report

    Show References:

    Microsoft’s January 2021 Patch Tuesday Addresses 83 CVEs
    Solorigate: SolarWinds Orion Platform Contained a Backdoor Since March 2020 (SUNBURST)
    Webinar Recording on SolarWinds Incident
    AMNESIA:33: Researchers Disclose 33 Vulnerabilities Across Four Open Source TCP/IP Libraries

    Follow along for more from Tenable Research:
    Subscribe to the blog
    Follow Tenable’s Zero Day team on Medium
    Tenable Research Podcast Musical References 

    1 hr 2 min
  • Security Research in 2020

    We’re joined by four members of the Zero Day Research team - Nick Miles, Jimi Sebree, Chris Lyne, and Evan Grant - to talk about what it’s like being a security researcher in 2020. Conferences mostly cancelled, vendor responses fluctuating, concerns about selecting targets and promoting work - it’s complicated out there for researchers. As always, Satnam Narang breaks down the latest vulnerability news for us.

    Show References:

    Microsoft’s December 2020 Patch Tuesday Addresses 58 CVEs including CVE-2020-25705 (SAD DNS)
    Cloudflare’s Blog Post on SAD DNS
    CVE-2020-4006: VMware Command Injection Flaw Exploited by Russian State-Sponsored Threat Actors
    CVE-2020-27125, CVE-2020-27130, CVE-2020-27131: Pre-Authentication Vulnerabilities in Cisco Security Manager Disclosed
    Spam warning on Cash Ash

    Zero Day Research
    COVID-19 Pandemic Data: As Attack Surface Expands, Software Vendors Improve Vulnerability Response Times
    PsExec Local Privilege Escalation
    Hacking in Among Us
    TP-Link Takeover with a Flash Drive
    Inside Amazon’s Ring Alarm System

    Follow along for more from Tenable Research:
    Subscribe to the blog
    Follow Tenable’s Zero Day team on Medium
    Tenable Research Podcast Musical References 



    53 min
  • Benchmarks and You: Making the Right Match

    On this episode, we talk about November Patch Tuesday - Satnam highlights some of the vulnerabilities and we discuss the new, limited format for the advisories from Microsoft. Our guest this month is Grant Dobbe who gives us a crash course on compliance benchmarks and how to pick the right one for you. The key lesson: don’t try to put a jet engine on a Cessna.

    Show References:
    Government Agencies Warn of State-Sponsored Actors Exploiting Publicly Known Vulnerabilities
    Webinar: Ramp-Up Your Response to Latest State Sponsored Attacks

    Microsoft’s November 2020 Patch Tuesday Addresses 112 CVEs including CVE-2020-17087
    CVE-2020-15999, CVE-2020-17087: Google Chrome FreeType and Microsoft Windows Kernel Zero Days Exploited in the Wild
    Google patches two more Chrome zero-days
    Apple patches iOS against 3 actively exploited 0-days found by Google

    Oracle Critical Patch Update for October 2020 Addresses 402 Security Updates
    CVE-2020-14882: Oracle WebLogic Remote Code Execution Vulnerability Exploited in the Wild
    Oracle Security Alert Advisory - CVE-2020-14750 (Out-of-Band)
    CVE-2020-14871: Critical Buffer Overflow in Oracle Solaris Exploited in the Wild as Zero-Day
    CVE-2020-27615: SQL Injection Vulnerability in WordPress Loginizer Plugin Affected Over One Million Sites
    CVE-2020-16846, CVE-2020-25592: Critical Vulnerabilities in Salt Framework Disclosed

    Webinar: How to Unlock the Security Benefits of the CIS Benchmarks
    CIS Benchmarks
    DISA STIGs
    STIG Viewer
    Single Check Audits on Github
    Github: Audit file for CVE-2020-14871

    Tenable Research Podcast Musical References



    51 min
  • Security Advisories: the Good, the Bad, and the Weird

    This month, Luke Tamagna-Darr is back and he and Satnam have a lot to say about security advisories. As always, we walk through the latest vulnerability news - specifically diving into “Zerologon” and “Bad Neighbor” as well as multiple alerts from CISA. Many advisories recently were focused on chaining vulnerabilities, providing insight into how attackers are leveraging bugs together in attacks.

    Show References:

    Writing Security Advisories: 5 Best Practices For Vendors
    Microsoft’s October 2020 Patch Tuesday Addresses 87 CVEs including “Bad Neighbor” Windows TCP/IP Vulnerability (CVE-2020-16898)
    CVE-2020-1472: 'Zerologon' Vulnerability in Netlogon Could Allow Attackers to Hijack Windows Domain Controller
    CVE-2020-1472: Advanced Persistent Threat Actors Use Zerologon Vulnerability In Exploit Chain with Unpatched Vulnerabilities
    US Cybersecurity Agency CISA Alert: Foreign Threat Actors Continue to Target Unpatched Vulnerabilities
    CVE-2020-2040: Critical Buffer Overflow Vulnerability in PAN-OS Devices Disclosed
    Multiple Vulnerabilities in CodeMeter Leave Managed Industrial Control Systems Open to Attack
    CVE-2020-6925, CVE-2020-6926, CVE-2020-6927: Multiple Vulnerabilities in HP Device Manager

    Tenable Research Spotify Playlist



    36 min
  • The Joys of Compliance (No Kidding)

    We kick things off with this month’s vulnerability news as well as some primary research Satnam has done into questionable advertisements on TikTok. Then, we speak with Justin Brown about the joys of audit and compliance. Specifically, he talks about how his team works to develop and improve over 100,000 configuration checks.


    Microsoft’s September 2020 Patch Tuesday Addresses 129 CVEs

    Critical Vulnerability in File Manager WordPress Plugin Exploited in the Wild

    CVE-2020-3566, CVE-2020-3569: Zero-Day Vulnerabilities in Cisco IOS XR Software Targeted in the Wild

    CVE-2020-5776, CVE-2020-5777: Multiple Vulnerabilities in the MAGMI Magento Mass Import Plugin

    CVE-2019-0230: Apache Struts Potential Remote Code Execution Vulnerability

    TikTok Ad Scams: Insufficient Moderation Leaves 'For You' Page Filled with Dubious Apps, Products and Services


    Edge Week Agenda

    59 min

About Tenable Research Podcast

From the publisher's feed

Join members of Tenable Research for a discussion about the latest vulnerabilities, exploits and cyber threats. Analysis, insights and guidance for information security and IT professionals who want…