SN 694: The SQLite RCE Flaw




Security Now (Audio) show

Summary: <ul> <li>Rhode Island's response to Google's recent API flaw</li> <li>Signal's response to Australia's anti-encryption legislation</li> <li>The return of PewDiePie</li> <li>US border agents retaining traveler's private data</li> <li>This Week in Android Hijinks</li> <li>Confusion surrounding the Windows v5 release</li> <li>Another Facebook API mistake</li> <li>The 8th annual most common passwords list (AKA "How's 'monkey' doing?")</li> <li>Why all might not be lost if someone is hit with drive encrypting malware</li> <li>Microsoft's recent 4-month run of 0-day vulnerability patches</li> <li>The Firefox 64 update</li> <li>A reminder of an awesome train game for iOS, Mac and Android</li> <li>A look at a new and very troubling flaw discovered in the massively widespread SQLite library... and what we can do.</li> </ul><p>We invite you to read our <a href="https://www.grc.com/SN/SN-694-Notes.pdf">show notes</a>.</p> <p><strong>Hosts:</strong> <a href="https://twit.tv/people/steve-gibson">Steve Gibson</a> and <a href="https://twit.tv/people/leo-laporte">Leo Laporte</a></p> <p>Download or subscribe to this show at <a href="https://twit.tv/shows/security-now">https://twit.tv/shows/security-now</a>.</p> <p>You can submit a question to Security Now! at the <a href="https://www.grc.com/feedback.htm" target="_blank">GRC Feedback Page</a>.</p> <p>For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: <a href="https://www.grc.com/securitynow.htm" target="_blank">grc.com</a>, also the home of the best disk maintenance and recovery utility ever written <a href="https://www.grc.com/sr/spinrite.htm" target="_blank">Spinrite 6</a>.</p> <p><strong>Sponsors:</strong></p><ul> <li><a href="http://LastPass.com/twit">LastPass.com/twit</a></li> <li><a href="http://RocketMortgage.com/SecurityNow">RocketMortgage.com/SecurityNow</a></li> <li><a href="http://redhat.com/heroes">redhat.com/heroes</a></li> </ul>