Light

Episode #860 Quiz

Trust Dies in Darkness
Date: 2022-03-01 | Length: 1.75 hrs | Episode page at twit.tv

About this episode

The episode surveys why ransomware payments rarely stop extortion, with operators reusing stolen data, double-extorting victims, and selling exfiltrated information. It details Daxin, a stealthy Windows kernel-driver backdoor using hijacked TCP connections, custom key exchange, tunneling, and multi-hop routing. It also explains Log4Shell persistence and Samsung TrustZone AES-GCM IV-reuse flaws.

Your name and email are stored only in your browser local storage for convenience. They are not retained server-side.

Question 1: According to the Venafi survey discussed in the episode, what happened to a notable share of victims after they paid ransomware extortion demands?
Question 2: What stealth technique was central to Daxin’s ability to hide its communications on protected networks?
Question 3: How did Daxin establish its multi-hop path through multiple infected computers?
Question 4: What did the March 2022 Log4j retrospective show about Internet scanning activity after the initial disclosure?
Question 5: What specific flaw did the Tel Aviv researchers identify in Samsung’s TrustZone Keymaster design?
Cancel