MacMusic  |  PcMusic  |  440 Software  |  440 Forums  |  440TV  |  Zicos
code
Search

New Micro-Op Cache Vulnerability Evades All Previous Fixes For Spectre-Like Attacks

Tuesday May 4, 2021. 03:00 PM , from Slashdot
ffkom writes: Modern x86 and ARM CPUs translate opcodes into ops, which are usually stored in a cache of their own for later re-use. Researchers from the university of Virginia have found a way to exploit this for side-channel attacks, where malicious code exfiltrates information from other processes or virtual machines based on measurable characteristics of the op-cache state, which they describe in their scientific paper.. This side-channel attack evades all previous fixes for SPECTRE-like attacks, and poses yet another difficult-to-address risk to all software that runs on CPUs that are used by possibly malicious code at the same time -- like code running on other people's computers ('the cloud') or code running on CPUs that at the same time run 'sandboxes' with code from some untrusted sources on the Internet.

Read more of this story at Slashdot.
rss.slashdot.org/~r/Slashdot/slashdot/~3/3Sa3u6ieQjQ/new-micro-op-cache-vulnerability-evades-all-pre...
News copyright owned by their original publishers | Copyright © 2004 - 2024 Zicos / 440Network
Current Date
Apr, Thu 25 - 11:55 CEST