How to mitigate the Microsoft MSHTML remote code execution zero-day

How to mitigate the Microsoft MSHTML remote code execution zero-day

Assessment

Interactive Video

Architecture, Information Technology (IT)

University

Hard

Created by

Quizizz Content

FREE Resource

The video tutorial discusses the use of office files in targeted attacks against Microsoft users, highlighting the vulnerability CVE 2021-40444. It emphasizes the importance of user education and suggests mitigation techniques, including using Microsoft Defender and ASR rules. The tutorial provides detailed steps for configuring group policy and registry settings to enhance security and protect against zero-day attacks.

Read more

7 questions

Show all answers

1.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

What is the primary vulnerability discussed in the video related to Microsoft Office files?

Phishing attacks via social media

Malicious use of Windows Explorer Preview Pane

Unauthorized access to email accounts

Data leakage through cloud services

2.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Which file types are mentioned as being used in targeted attacks?

PDF and TXT

MP3 and WAV

Doc, Docx, Docm, and RTF

JPEG and PNG

3.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

What is the first line of defense against opening malicious documents?

Installing a firewall

Educating users

Using a VPN

Regular software updates

4.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

What additional protection does Will Dorman suggest using?

Using Microsoft Defender ASR rules

Disabling all macros

Installing third-party antivirus

Blocking all internet access

5.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

What is the purpose of Microsoft Defender ASR rules?

To enhance system performance

To block office child processes

To allow remote desktop access

To enable faster internet browsing

6.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

What registry change can prevent ActiveX controls from running?

Disabling all network connections

Enabling automatic updates

Setting values for Internet zones

Changing desktop wallpaper

7.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Why is it important to assess your risk posture regarding zero-day attacks?

To enhance customer satisfaction

To reduce software costs

To determine the need for ASR rules

To improve employee productivity