Episode #868 Quiz
The Zero-Day Explosion
Date: 2022-04-26 | Length: 1.75 hrs | Episode page at twit.tv
About this episode
CISA’s exploited-vulnerability catalog now includes older flaws, reflecting long patch tails. Lenovo UEFI drivers left in production firmware let privileged code disable SPI flash protections and Secure Boot, enabling bootkits. A browser-based wallet exposed private keys via a constant nonce and six-digit PIN brute force. Java ECDSA flaws let attackers forge signatures.
Your name and email are stored only in your browser local storage for convenience. They are not retained server-side.