Light

Episode #803 Quiz

Comparative Smartphone Security
Date: 2021-01-26 | Length: 2 hrs | Episode page at twit.tv

About this episode

Chrome 88 and Edge 88 expand built-in password management with weak-password checks, editing, generation, and breach detection, but stored secrets remain decryptable while the browser is logged in. The episode also details Flash’s hard shutdown failures, DDoS-extortion ransomware, SolarWinds tradecraft, and smartphone security tradeoffs in iOS and Android, especially cloud backups.

Your name and email are stored only in your browser local storage for convenience. They are not retained server-side.

Question 1: According to the episode, what specifically allowed Chrome 88 users to identify a weak password from the browser's password check without that finding necessarily indicating a real exposed credential?
Question 2: In the SolarWinds follow-up analysis, what mechanism did Microsoft describe for separating the second-stage Cobalt Strike execution from the original SolarWinds process?
Question 3: What did Microsoft say the SolarWinds attackers did immediately after running noisy network reconnaissance to reduce the chance of detection?
Question 4: According to the Johns Hopkins analysis summarized in the episode, what was the key Android encryption limitation for devices that had already been unlocked once?
Question 5: What did the episode say about the relationship between iCloud backup and Apple services' end-to-end encryption claims?
Cancel