WHOSE AFRAID OF ZERO DAY by Stuart Corner
WHO’S AFRAID OF ZERO DAY? We fear the unknown. And zero day exploits are scary unknowns. They are vulnerabilities in software and devices that only attackers know about. So there’s no patch you can apply to protect your systems. There’s no antivirus signatures that will alert you about the attack. But there is Google Project Zero, a team of security analysts employed by Google and tasked with finding zero-day vulnerabilities and researching and publicly documenting how they can be exploited.
114
the AusCERT2021 conference, sought to allay fears about zero day attacks, dispel the myth of the zero day attacker as supersmart, to present a realistic assessment of the dangers of zero day attacks, and describe progress being made to counter them. “The mission of my work is to learn from zero days exploited in the wild in order to make zero day hard. I do technical analyses of vulnerabilities and their exploits, perform variant analysis and patch analysis to make sure things are actually fixed,” she told
Maddie Stone, a security researcher from Project
the AusCERT2021 audience in the Star Hotel on
Zero, in a presentation, A World where 0day is Hard, at
Queensland’s Gold Coast, and online.
WOMEN IN SECURITY MAGAZINE