Light

Episode #847 Quiz

Bogons Begone!
Date: 2021-11-30 | Length: 2 hrs | Episode page at twit.tv

About this episode

Microsoft Edge’s optional Super Duper Secure Mode disables JIT compilation and adds mitigations like CET and future Arbitrary Code Guard support. Check Point found MediaTek audio DSP firmware flaws enabling malicious apps to intercept calls and media. HP described JavaScript email attachments deploying RATs, and Microsoft’s Windows Installer privilege escalation patch was incomplete.

Your name and email are stored only in your browser local storage for convenience. They are not retained server-side.

Question 1: In Edge's Super Duper Secure Mode, which mitigation did Microsoft explicitly say would be added later to block attackers from loading malicious code into memory?
Question 2: Checkpoint Research said malicious apps could interact with MediaTek firmware through which component to steal audio and record phone calls?
Question 3: What file name pattern did HP describe as the classic initial attachment used to start the RATDispenser infection chain?
Question 4: Which Microsoft Windows Installer vulnerability did Cisco Talos say was being actively exploited as a local privilege escalation zero-day?
Question 5: According to John Gilmore's reply, what operating-system change had already been deployed in Linux, Android, macOS, iOS, and Solaris since 2008?
Cancel