Light

Episode #931 Quiz

SATELLITE INSECURITY, PART 1
Date: 2023-07-18 | Length: 1.75 hrs | Episode page at twit.tv

About this episode

Microsoft’s July Patch Tuesday fixed 132 flaws, including six actively exploited zero-days. Kaspersky highlighted MSHTML and scripting bypasses, SmartScreen, Outlook, and Error Reporting privilege escalation, plus a dangerous Office vulnerability abusing file:// cross-protocol navigation. Microsoft recommended Defender protections or a registry block, while revoking over 100 malicious drivers.

Your name and email are stored only in your browser local storage for convenience. They are not retained server-side.

Question 1: According to the episode, which Microsoft protection directly helps subscribers avoid exploitation of CVE-2023-36884 through Office attachments?
Question 2: What exact mitigation did Microsoft recommend for organizations that cannot use the cloud protections against CVE-2023-36884 exploitation?
Question 3: Which July 2011 Microsoft update page did Steve trace the cross-protocol file:// behavior back to?
Question 4: What was the stated operating-system requirement for the malicious drivers Microsoft added to the Windows Driver.STL revocation list?
Question 5: What was the key technical requirement behind Google Play's new organization-account verification policy announced in the episode?
Cancel