Light

Episode #882 Quiz

Rowhammer's Nine Lives
Date: 2022-08-02 | Length: 2 hrs | Episode page at twit.tv

About this episode

Atlassian Confluence’s Questions app installed a hard-coded “disabled system user” account, and attackers exploited disclosed credentials before admins patched or manually disabled it; CISA urged VPN or reverse-proxy protection. TLS-Anvil then fuzz-tested 13 TLS libraries, finding exploits, handshake and alert-handling flaws, and interoperability bugs, underscoring rigorous protocol testing.

Your name and email are stored only in your browser local storage for convenience. They are not retained server-side.

Question 1: According to the episode, what did Atlassian say was required to remediate the Confluence issue created by the Questions for Confluence app?
Question 2: What did TLS-Anvil’s evaluation of 13 TLS implementations reveal about alert handling and related issues across the libraries tested?
Question 3: Which set of TLS libraries did the episode identify as having around 97% pass rates on the server-side tests?
Question 4: What change in Proofpoint’s campaign data did Steve connect to Microsoft’s default macro blocking?
Question 5: In the Half-Double Rowhammer attack, what role did the near aggressor play in relation to the far aggressor and the victim row?
Cancel