Light

Episode #960 Quiz

UNFORESEEN CONSEQUENCES
Date: 2024-02-06 | Length: 1.75 hrs | Episode page at twit.tv

About this episode

CISA urged SOHO router manufacturers to automate updates, remove WAN web management, and require physical confirmation before lowering security. Qualys disclosed glibc heap overflow and qsort memory-corruption flaws affecting most Linux distributions, with local root escalation risk. Fastly is replacing OpenSSL with smaller, fuzzed BoringSSL to reduce CVEs and patching burden.

Your name and email are stored only in your browser local storage for convenience. They are not retained server-side.

Question 1: According to the episode, what specific action did CISA and the FBI urge SOHO router manufacturers to require before security settings can be reduced?
Question 2: What was the key exploit impact of the glibc syslog flaw CVE-2023-6246 discussed in the episode?
Question 3: Why did Fastly say it was replacing OpenSSL with BoringSSL on its edge systems?
Question 4: What standardized mechanism did the episode describe for letting password managers discover and promote Passkey enrollment?
Question 5: According to Steve's concern about Google's anti-tracking changes, what likely consequence could websites adopt to preserve ad revenue?
Cancel