Episode #987 Quiz
Rethinking Revocation
Date: 2024-08-13 | Length: 2 hrs | Episode page at twit.tv
About this episode
Sitting Duck exploits misconfigured DNS delegation when domains remain pointed at shared cloud nameservers after zones are deleted, letting attackers re-register them and control web, mail, and TLS. Separately, a Microsoft RDL heap overflow enabled zero-click pre-auth RCE, AMD’s Sinkclose microcode flaw threatened boot security, and certificate revocation is shifting from OCSP back to CRLs.
Your name and email are stored only in your browser local storage for convenience. They are not retained server-side.