

SANS ISC Stormcast, Jan 17, 2025: Analyzing Complex Datasets, Citrix Update Issues, Ivanti's Security Advisory, and the Future of Passkeys (@sans_edu)
9 snips Jan 17, 2025
Rich Green, a SANS.edu graduate student and senior solutions engineer, dives into the transformative world of passkeys, highlighting their potential to enhance security beyond traditional passwords. He shares insights from his research on the cryptographic methods underlying passkeys and the challenges of implementing them in legacy systems. The discussion also addresses the latest issues with Citrix's Session Recording Agent and Ivanti's security advisories, offering a glimpse into the evolving landscape of cybersecurity.
AI Snips
Chapters
Transcript
Episode notes
Efficient IP Storage
- Store IP addresses as unsigned integers in databases for efficiency.
- This approach simplifies sorting and subnetting operations.
Zero-Padding Woes
- Johannes Ullrich recounts past issues with zero-padded IP addresses in the SANS Internet Storm Center database.
- This caused problems with sorting and display, highlighting the importance of correct data storage.
Citrix Update Workaround
- Disable the Citrix Session Recording Agent before applying Microsoft's January security update.
- Re-enable the agent after the update to avoid conflicts.