Light

Episode #824 Quiz

Avaddon Ransonomics
Date: 2021-06-22 | Length: 2 hrs | Episode page at twit.tv

About this episode

Chrome patched its seventh 2021 zero-day, CVE-2021-30554, a WebGL use-after-free enabling remote code execution. Avaddon’s ransomware model increasingly used purchased initial access, malware backdoors, Cobalt Strike, lateral movement, and Active Directory compromise. A WiFi SSID format-string bug in iOS caused crashes until network settings reset.

Your name and email are stored only in your browser local storage for convenience. They are not retained server-side.

Question 1: According to the Proofpoint attack chain Steve described, what role does the initial access broker play before the ransomware affiliate deploys Cobalt Strike?
Question 2: What exact SSID value did Steve say could make an iOS device’s WiFi become immediately and semi-permanently inoperative when it tried to join that network?
Question 3: What mechanism did Adam discover for bypassing Windows 11 Home’s insistence on connecting to the Internet during setup?
Question 4: What did Steve say the new SpinRite 6.1 logging approach would do instead of retaining the most recent N log entries?
Question 5: According to the Russian researchers Steve quoted, what was the main reason Avaddon shut down?
Cancel