Real life hacks for Windows and Office... and how to stop them (Microsoft Ignite)

Microsoft's Hacker in Chief, Dave Weston, demonstrates real world hacks for Windows and Office along with how to stop them. The first attacks are through Office macro-enabled files and malicious files without macros. Dave explains how the upcoming Application Guard capability in Office will run the app using virtualization-based security to abstract it from Windows. Next, he walks through the steps a hacker would take to disable anti-malware on a device and how the new System Guard API can detect the security state of the machine and disable cloud services access via Conditional Access blocks in Azure Active Directory. Finally, Dave shows how hacking a vulnerability via PCI leach over Thunderbolt can sign into any unprotected computer and how virtualization-based security in Windows 10 along with Secured Core PCs can prevent these and other zero day exploits. Check out https://aka.ms/securedcore for more information about Secured Core PCs At Microsoft Ignite 2019, this was session THR2275: Real-life hacks and how to stop them with Windows and Office updates. David Weston is the Partner Director of OS security at Microsoft where he is responsible for the Security engineering of Windows, Windows Server, and the Azure OS as well as the Offensive Security Research Team (also known as the Windows REDTEAM). Before leading security engineering in Windows, David lead the security research team for Microsoft Defender ATP the team responsible for detecting and responding to global adversaries. David has been with Microsoft since Windows 7, holding many different security roles in mitigation design, penetration testing, malware analysis, and threat intelligence. In addition to his engineering work, David is also an accomplished security researcher presenting his work at numerous security conferences including Blackhat and Defcon.

20+ Windows 10 & Office Tips & Tricks in 10 minutes | Demopalooza III
▶︎

20+ Windows 10 & Office Tips & Tricks in 10 minutes | Demopalooza III

Windows Virtual Desktop | upcoming admin experience + recent updates (Microsoft Ignite)
▶︎

Windows Virtual Desktop | upcoming admin experience + recent updates (Microsoft Ignite)

Linux Full Course for Beginners | Learn Linux System Administration
▶︎

Linux Full Course for Beginners | Learn Linux System Administration

Complete Kubernetes Course - From BEGINNER to PRO
▶︎

Complete Kubernetes Course - From BEGINNER to PRO

Combatting Phishing in 2026: Defender for Office, Teams Security, and AI Protection -track1 session9
▶︎

Combatting Phishing in 2026: Defender for Office, Teams Security, and AI Protection -track1 session9

Real life migrations to Azure and how they did it.
▶︎

Real life migrations to Azure and how they did it.

Crash Course, Active Directory, DHCP & DNS for Entry Level Tech Support
▶︎

Crash Course, Active Directory, DHCP & DNS for Entry Level Tech Support

Microsoft Threat Protection | Azure Sentinel and Microsoft 365 Threat Protection (Microsoft Ignite)
▶︎

Microsoft Threat Protection | Azure Sentinel and Microsoft 365 Threat Protection (Microsoft Ignite)

System Design Explained: APIs, Databases, Caching, CDNs, Load Balancing & Production Infra
▶︎

System Design Explained: APIs, Databases, Caching, CDNs, Load Balancing & Production Infra

Gemini CLI Essentials – Full Course
▶︎

Gemini CLI Essentials – Full Course

OWASP Top 10 2025: Your complete guide to securing your applications
▶︎

OWASP Top 10 2025: Your complete guide to securing your applications

Secure Boot certificate updates explained
▶︎

Secure Boot certificate updates explained

S01E01 - Setting up your Microsoft Intune Tenant (I.T)
▶︎

S01E01 - Setting up your Microsoft Intune Tenant (I.T)

Windows Admin Center: Hyper-V Live Migration, PerfMon & deeper Azure integration. (Microsoft Ignite)
▶︎

Windows Admin Center: Hyper-V Live Migration, PerfMon & deeper Azure integration. (Microsoft Ignite)

Microsoft 365 Copilot Full Tutorial | Word, Excel, Teams & Outlook (Free Beginner Guide)
▶︎

Microsoft 365 Copilot Full Tutorial | Word, Excel, Teams & Outlook (Free Beginner Guide)

Beginner to T-SQL [Full Course]
▶︎

Beginner to T-SQL [Full Course]

Insider risk management in Microsoft 365. (Microsoft Ignite)
▶︎

Insider risk management in Microsoft 365. (Microsoft Ignite)

Practical Help Desk - Learn IT Fundamentals in 9 Hours
▶︎

Practical Help Desk - Learn IT Fundamentals in 9 Hours

Learn Microsoft Active Directory (ADDS) in 30mins
▶︎

Learn Microsoft Active Directory (ADDS) in 30mins

What Is DSPM? Guide to Data Security Posture Management | Orchestry
▶︎

What Is DSPM? Guide to Data Security Posture Management | Orchestry