Light

Episode #801 Quiz

Out With the Old
Date: 2021-01-12 | Length: 1.75 hrs | Episode page at twit.tv

About this episode

Firefox and Chromium received critical remote-code-execution patches; Firefox’s SCTP use-after-free likely required a malicious server, while Chromium’s V8 out-of-bounds write was exploitable via web content. Firefox 86 will disable Backspace navigation, configurable via about:config. Ryuk and REvil remain profitable, while Intel’s hardware ransomware detection claim was dismissed as marketing hype.

Your name and email are stored only in your browser local storage for convenience. They are not retained server-side.

Question 1: In Firefox’s SCTP-related use-after-free issue, what attack shape did Steve conclude was most likely required to exploit the bug against a browser user?
Question 2: What specific justification did Mozilla give for removing Backspace-as-Back navigation in Firefox?
Question 3: According to Steve’s critique of Intel’s CES announcement, why did he say the PMU-based ransomware detection claim was fundamentally unconvincing?
Question 4: What did the Kaspersky post identify as the notable overlap between Sunburst and Kazuar?
Question 5: What did Steve say was the practical purpose of turning the old SpinRite code “out with the old” rather than preserving its historical compatibility layers?
Cancel