Light

Episode #957 Quiz

The Protected Audience API
Date: 2024-01-16 | Length: 1 hr | Episode page at twit.tv

About this episode

Gibson described compromised IoT appliances as potential botnet nodes, using an LG washing machine’s 3.6GB daily upload to illustrate covert outbound traffic and recommending guest-LAN isolation or disconnection. He also covered DDoS null routing, KyberSlash timing leaks in Kyber implementations, and Google’s browser-side Protected Audience API ad auctions with isolated worklets.

Your name and email are stored only in your browser local storage for convenience. They are not retained server-side.

Question 1: According to the episode, what is the key browser-side change Google made to web advertising with the Protected Audience API?
Question 2: What timing side-channel flaw was found in some Kyber implementations discussed in the episode?
Question 3: What did the StatCounter browser map show about global browser usage in the episode?
Question 4: What concrete mitigation does the episode recommend for compromised or risky IoT devices like the networked washing machine?
Question 5: According to the episode, what was the practical effect of the carrier's null routing during the SourceHut DDoS incident?
Cancel