Light

Episode #932 Quiz

Satellite Insecurity, Part 2
Date: 2023-07-25 | Length: 1.75 hrs | Episode page at twit.tv

About this episode

Researchers showed low Earth orbit satellite firmware often lacks encryption, authentication, ASLR, and stack protections, enabling remote code execution through unauthenticated TeleCommands, buffer overreads, and vulnerable file systems. Cheap ground stations and ground-station-as-a-service now make attacks practical, undermining security-by-obscurity and risking persistent takeover, denial of service, or orbital collision.

Your name and email are stored only in your browser local storage for convenience. They are not retained server-side.

Question 1: According to the episode, what specific action did Apple say it would take if the UK enacted the proposed Investigatory Powers Act changes rather than weaken security?
Question 2: What capability was the Web Environment Integrity proposal said to give websites in relation to ad blockers?
Question 3: What joint warning did the FTC and HHS send to 130 hospital systems and telehealth providers?
Question 4: What did the satellite researchers say about the practical accessibility of ground stations, which changed the threat model for LEO satellites?
Question 5: In the satellite firmware paper, what did the researchers report about one vulnerable TeleCommand on an ARM Cortex-M3 satellite?
Cancel