Episode #859 Quiz
A BGP Routing Attack
Date: 2022-02-22 | Length: 1.5 hrs | Episode page at twit.tv
About this episode
WordPress force-updated UpdraftPlus after a missing permissions check let any authenticated user download backups, risking PII and site takeover. Xenomorph Android banking malware used accessibility overlays, SMS and notification interception, and extensive logging to steal credentials. Hive ransomware’s flawed custom XOR keystream was reverse-engineered, enabling decryption without the attacker’s private key.
Your name and email are stored only in your browser local storage for convenience. They are not retained server-side.