Light

Episode #962 Quiz

The Internet Dodged a Bullet
Date: 2024-02-20 | Length: 2 hrs | Episode page at twit.tv

About this episode

Wyze’s cloud camera mix-up exposed thumbnails and some event video between accounts, illustrating risks of remote home surveillance. Microsoft’s Patch Tuesday fixed 73 flaws, including two actively exploited Windows bypasses, Exchange and Outlook 9.8 issues, and 15 SQL OLE DB RCE bugs. DNSSEC KeyTrap enabled single-packet CPU exhaustion, mitigated by validation limits.

Your name and email are stored only in your browser local storage for convenience. They are not retained server-side.

Question 1: According to the episode, what was the core reason last week’s Microsoft patch set included a DNS-related mitigation that mattered to the Internet as a whole?
Question 2: What combination of DNSSEC conditions did the researchers exploit to create the quadratic KeySigTrap attack?
Question 3: Why did the Unbound resolver suffer a longer denial-of-service duration than some other resolvers in the KeyTrap testing?
Question 4: What router-management mistake did Gavin report that allowed an ISP to remotely alter customer router settings?
Question 5: What was the episode’s recommended reason that a website might still enforce a maximum password length or forbid special characters today?
Cancel