This week’s episode goes deep into the Citrix ADC vulnerability leaving no stone unturned in what is now the 5th week of this ongoing saga and boy did things escalate this week! I also talk about a very serious RDP vulnerability that has been patched this week, along with a CryptoAPI vulnerability that warranted a press conference and warning from the NSA Cyber Security Team AND news on App Volumes 4.0, MSIX support for services plus much more!
This episode is brought to you in large part thanks to my sponsors:
Episode 107 is available on Soundcloud:
And on YouTube:
If you’d like to play the Podcast on a different podcast service such as Apple Podcasts, Google Podcasts or Spotify. You can find this episode at 5BytesPodcast.com
Here are this episodes links as shown in the YouTube video:
Scripts, Tricks & Tips:
Shodan Monitor Subscription
VDR Blog on How to Upgrade from App Volumes 2.18 to 4.0
App-V Reporting Product
EdgeChromium-FirstRunExperience.ps1
Citrix ADC Vulnerability Deep Dive:
MDSec.co.uk Article
Shodan Citrix NetScaler ADC Query
Branded Shitrix
Mass Scan Events
Dutch Company Compromised
Total Vulnerabilities Graph
Threat Level Map
nc.conf Compromise Info
Citrix Honeypot
Curated List of References
Firmware Upgrade Release Dates
Mitigation Not Working on 12.1.50.28
CryptoAPI and RDP Vulnerabilities:
NSA Warning
CVE-2020-0609
CVE-2020-0611
RDP Exploit Demo
CryptoAPI Exploit
Site to Check if You Are Vulnerable
Firefox Zero Day:
Digital Trends Article
Ransomware Uses Wake-On-LAN:
BleepingComputer.com Article
Upgrade to Windows 10 for Free:
ZDNet Article
Microsoft Edge Stories:
Poll Results
PatchMyPC Tweet
How to Set Edge as Default Browser
MSIX Now Supports Services:
Tweet
App Volumes 4.0:
VMware Article
CUGC Stephanie Roper Community Award:
Information
BlueScreen Brothers Podcast:
LISTEN
Biometric Fingerprint Reader Hack:
VIDEO
Browser Comparison:
VentureBeat.com Article
Citrix 1912 LTSR Performance Comparison with Other VDA Versions:
GO-EUC.com Article
A Full Podcast Episode Guide:
Check out my site:
Rorymon.com
Twitter:
@Rorymon