The DAY[0] podcast will be on break until September 14, 2020
A quick chat about E2E Crypto and Zoom, followed by a few noteworth exploits including Bluetooth impersonation, a 15-year old qmail CVE, NordVPN, and an RCE in Google
[00:24:11] BIAS: Bluetooth Impersonation AttackS
https://little-canada.org/pdf/web/viewer.html?file=antonioli-20-bias.pdf
https://francozappa.github.io/about-bias/talk/bias-snp/
[00:33:13] 15 years later: Remote Code Execution in qmail (CVE-2005-1513)
http://tukan.farm/2016/07/27/munmap-madness/
https://cr.yp.to/qmail/guarantee.html
http://www.guninski.com/where_do_you_want_billg_to_go_today_4.html
[00:48:01] Privilege Escalation in Parallels Desktop via VGA Device [CVE-2020-8871]
https://twitter.com/matalaz/status/580600098092105728
DAY[0] will be on break until September but you can find the video archive on on Youtube (@DAY[0])