Oct. 13, 2022, midnight | DAY[0]

DAY[0] www.youtube.com

Just a couple issues this week and a discussion about why you should look at old vulnerabilities and the pace exploit development advanced at.

Links and vulnerability summaries for this episode are available at: https://dayzerosec.com/podcast/158.html

[00:00:00] Introduction
[00:00:26] Spot the Vuln - Authentic Token ... Fixed
[00:05:42] Hancom Office 2020 Hword Docx XML parsing heap underflow vulnerability
[00:11:07] Shining New Light on an Old ROM Vulnerability: Secure Boot Bypass via DCD and CSF Tampering on NXP i.MX Devices
[00:22:21] Discussion: …

binary binary exploitation boot bypass exploitation office podcast secure boot

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Information Security Engineers

@ D. E. Shaw Research | New York City

Staff DFIR Investigator

@ SentinelOne | United States - Remote

Senior Consultant.e (H/F) - Product & Industrial Cybersecurity

@ Wavestone | Puteaux, France

Information Security Analyst

@ StarCompliance | York, United Kingdom, Hybrid

Senior Cyber Security Analyst (IAM)

@ New York Power Authority | White Plains, US