
Cybersecurity Updates: AI Malware Analysis, CPU Vulnerabilities, and USB Exploits Highlighted in Stormcast
On August 14, 2020, the Internet Storm Center Stormcast covered multiple cybersecurity topics, including an experiment using the open-source AI model Gamma 4 to analyze honeypot malware data. The AI summarized threat intelligence from VirusTotal and Cyber Gordon, assessing malware danger and compromise indicators without directly analyzing the malware itself. Two CPU vulnerabilities, Skitter Creek (memory mapping manipulation) and a System Management Mode (SMM) flaw, were disclosed by researcher Domas, affecting AMD and x86 processors respectively, with potential cross-architecture risks for the former. A GeoServer SQL injection exploit was also highlighted, with screenshots of the attack shared by researcher Xi Huang, indicating active exploitation. Additionally, researchers Alejandroto Hernando and Bourja Martinez demonstrated a Windows USB vulnerability leveraging vulnerable drivers for privilege escalation via emulated hardware. The vulnerabilities lack simple patches, and the USB attack bypasses malware restrictions by exploiting pre-installed drivers.