Light

Episode #987 Quiz

Rethinking Revocation
Date: 2024-08-13 | Length: 2 hrs | Episode page at twit.tv

About this episode

Sitting Duck exploits misconfigured DNS delegation when domains remain pointed at shared cloud nameservers after zones are deleted, letting attackers re-register them and control web, mail, and TLS. Separately, a Microsoft RDL heap overflow enabled zero-click pre-auth RCE, AMD’s Sinkclose microcode flaw threatened boot security, and certificate revocation is shifting from OCSP back to CRLs.

Your name and email are stored only in your browser local storage for convenience. They are not retained server-side.

Question 1: In the 'Sitting Ducks' discussion, what specific precondition makes a domain vulnerable to takeover in a shared DNS cloud environment?
Question 2: What attack capability did the 'MadLicense' RDL vulnerability provide according to the episode?
Question 3: What did the IOActive researchers identify as the mechanism behind AMD's Sinkclose flaw?
Question 4: Why did Let's Encrypt say it intends to end OCSP support?
Question 5: What was the key reason GRC's revoked.grc.com site continued to appear valid for several days after revocation?
Cancel