Light

Episode #897 Quiz

Memory-Safe Languages
Date: 2022-11-15 | Length: 1.5 hrs | Episode page at twit.tv

About this episode

NSA urged migration from C and C++ to memory-safe languages like C#, Go, Java, Ruby, Rust, and Swift, because buffer overflows, use-after-free, leaks, uninitialized variables, and races fuel about 70% of vulnerabilities. It recommended SAST, DAST, compiler checks, ASLR, DEP, and CFG to reduce exploitability, despite performance and migration costs.

Your name and email are stored only in your browser local storage for convenience. They are not retained server-side.

Question 1: According to the NSA advisory discussed in the episode, what percentage of Microsoft vulnerabilities from 2006 through 2018 were attributed to memory safety issues?
Question 2: What did the host say was the reason Microsoft domain controllers began failing Kerberos authentication after the November 8, 2022 updates?
Question 3: Which combination of features did the episode say Shennina integrated to perform its automated attacks and exfiltration?
Question 4: What limitation did the episode say applied to Apple's new AirDrop timeout feature in iOS 16.1.1 and 16.2 beta?
Question 5: How many nested hidden volumes per device did Shufflecake say it could manage?
Cancel