Security Now (Audio)

SN 1055: React's Perfect 10 - RAM Is the New Lobster

Dec 10, 2025
A critical React vulnerability just received a 'perfect 10' for risk, allowing attackers to compromise over a million servers with a single request. GrapheneOS recently withdrew from France, citing privacy concerns over new laws. In India, smartphone tracking mandates faced backlash, leading to their abrupt cancellation. Meanwhile, the demand for RAM driven by AI is causing skyrocketing prices. Finally, local network access permissions in Chrome aim to enhance security against remote attacks.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
ANECDOTE

DNS Benchmark's Starbucks Origin Story

  • Steve developed the original DNS Benchmark in 2008 during early-morning sprints at Starbucks and iterated it over years.
  • He spent a year modernizing it, adding IPv6 and encrypted DNS support, then released version 2 as a one-time-purchase tool.
INSIGHT

DNS Performance Requires New Metrics

  • DNS benchmarking priorities shifted: cached lookup speed no longer dominates due to modern multi-source web content.
  • GRC's DNS Benchmark v2 averages cached, uncached, and .com resolution to reflect today's DNS demands.
ADVICE

Buy Once, Run Multiple Rounds

  • Buy GRC's DNS Benchmark v2 once to get lifetime updates and avoid subscription churn.
  • Use the tool to evaluate resolver performance with multiple rounds to reduce internet jitter effects.
Get the Snipd Podcast app to discover more snips from this episode
Get the app