Light

Episode #818 Quiz

News from the DarkSide
Date: 2021-05-11 | Length: 1.5 hrs | Episode page at twit.tv

About this episode

TsuNAME exploits cyclic DNS records to trap naive recursive resolvers in infinite lookup loops, generating thousands of queries per second and amplifying traffic against authoritative servers. Google and Cisco patched affected resolvers. Separately, Exim’s 21 vulnerabilities, many remote and longstanding, threaten widely deployed mail servers and require immediate updates.

Your name and email are stored only in your browser local storage for convenience. They are not retained server-side.

Question 1: According to the TsuNAME discussion, what specific condition allows a recursive DNS resolver to get trapped into repeatedly querying authoritative servers?
Question 2: What were the two resolver products that the episode says failed the authors' manual cyclic-loop testing before being fixed?
Question 3: What did the Google blog post on 2SV say would start happening for some accounts, according to the episode's discussion?
Question 4: Which pair of Tor-related attacks did Nusenu say the malicious exit relays were using to manipulate user traffic?
Question 5: What approximate share of Tor exit capacity did Nusenu report this malicious entity had reached at its peak?
Cancel