The State of 0-Day in-the-Wild Exploitation

The State of 0-Day in-the-Wild Exploitation

USENIX Enigma Conference via YouTube Direct link

Intro

1 of 8

1 of 8

Intro

Class Central Classrooms beta

YouTube playlists curated by Class Central.

Classroom Contents

The State of 0-Day in-the-Wild Exploitation

Automatically move to the next video in the Classroom when playback concludes

  1. 1 Intro
  2. 2 0-day exploit: an exploit targeting a vulnerability that defenders don't yet know about
  3. 3 Across the industry, incomplete patches are making it easier for attackers to exploit users with Odays.
  4. 4 Internet Explorer Jscript
  5. 5 Chrome v8 Type Confusion
  6. 6 Windows splwow64 arbitrary pointer dereference
  7. 7 Analyze patches for bugs we or others report • Variant analysis • Brainstorm mitigation strategies • Offer to work with vendors on patches • Incentivizing vendors for complete & comprehensive patches
  8. 8 We need correct & comprehensive patches for all vulnerabilities to make it harder for users to be exploited with Odays.

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.