Light

Episode #980 Quiz

The Mixed Blessing of a Crappy PRNG
Date: 2024-06-25 | Length: 1.75 hrs | Episode page at twit.tv

About this episode

Windows’ WiFi stack flaw in nwifi.sys enables remote code execution from nearby hostile radios, even via compromised routers using saved networks. Turning off WiFi fully mitigates unpatched systems. The U.S. banned Kaspersky updates and sales over national-security concerns. Recall raises local and third-party leakage risks. RoboForm’s time-based PRNG made passwords predictable.

Your name and email are stored only in your browser local storage for convenience. They are not retained server-side.

Question 1: What did Steve identify as the specific mitigation that would completely protect an unpatched Windows machine from the WiFi RCE discussed in the episode?
Question 2: Why did the $5,000 exploit sale described in the episode materially change the threat model for the Windows WiFi flaw?
Question 3: According to the episode, what was the main basis of the Austrian complaint filed by noyb against Google’s Privacy Sandbox?
Question 4: What did Steve say RoboForm’s password generator effectively used as its source of password variability in the affected versions?
Question 5: Which version did Steve identify as the RoboForm release that fixed the password-generation flaw?
Cancel