Light

Episode #871 Quiz

The New EU Surveillance State
Date: 2022-05-17 | Length: 1.75 hrs | Episode page at twit.tv

About this episode

Episode 871 covered multiple security incidents: a Microsoft Patch Tuesday rollback for domain controllers after a PetitPotam/NTLM relay zero-day caused Active Directory authentication failures; Apple fixed an exploited AppleAVD kernel write; F5 BIG-IP CVE-2022-1388 enabled unauthenticated root command execution; and Google created an Open Source Maintenance Crew to improve supply-chain security.

Your name and email are stored only in your browser local storage for convenience. They are not retained server-side.

Question 1: Why did CISA temporarily remove CVE-2022-26925 from its Known Exploited Vulnerability Catalog?
Question 2: What did the active exploitation of CVE-2022-1388 on F5 BIG-IP systems allow an attacker to do through the iControl REST endpoint?
Question 3: What concrete role did Google's new Open Source Maintenance Crew have in the episode's discussion?
Question 4: According to the episode, which pair of cryptographic schemes did Steve correct himself about as not being safe from Shor's algorithm?
Question 5: What did the proposed EU legislation require beyond scanning for known child sexual abuse material hashes?
Cancel