It appears you have not yet registered with our community. To register please click here...

 
Go Back [M] > Madshrimps > WebNews
Inverse spectre attack now possible Inverse spectre attack now possible
FAQ Members List Calendar Search Today's Posts Mark Forums Read


Inverse spectre attack now possible
Reply
 
Thread Tools
Old 14th August 2018, 06:15   #1
[M] Reviewer
 
Stefan Mileschin's Avatar
 
Join Date: May 2010
Location: Romania
Posts: 153,541
Stefan Mileschin Freshly Registered
Default Inverse spectre attack now possible

Intel's world turns upside-down

A new Intel security flaw has been discovered that potentially allows passwords to be stolen.

Researchers said the new flaw enables an "inverse spectre attack" which is like a Spectre attack only in reverse, carrying out a Bulgarian three-point-turn.

According to Giorgi Maisuradze and Professor Dr. Christian Rossow a ret2spec (return-to-speculation) vulnerability with the chips allows for would-be attackers to read data without authorization.

According to Professor Rossow: "The security gap is caused by CPUs predicting a so-called return address for runtime optimisation.

"The upshot is that that of an attacker can manipulate this prediction, he gains control over speculatively executed program code. It can read out data via side channels that should actually be protected from access."

Malicious web pages could interpret the memory of the web browser to access and copy critical data. Such data would include stored passwords.

"At least all Intel processors of the past ten years are affected by the vulnerabilities. Similar attack mechanisms could probably also be derived for ARM and AMD processors. Manufacturers were notified of the weaknesses in May 2018 and were granted 90 days to remedy them before the results were published. That deadline has now expired."

https://fudzilla.com/news/pc-hardwar...k-now-possible
Stefan Mileschin is offline   Reply With Quote
Reply


Similar Threads
Thread Thread Starter Forum Replies Last Post
New Spectre attack allows a network hack Stefan Mileschin WebNews 0 30th July 2018 13:25
Another Spectre class attack spotted Stefan Mileschin WebNews 0 26th July 2018 09:44
HP Spectre x360 13 Review Stefan Mileschin WebNews 0 15th February 2018 06:29
AMD sued over Spectre exploits Stefan Mileschin WebNews 0 13th February 2018 20:14
HP Spectre x360 Review Stefan Mileschin WebNews 0 23rd February 2017 10:47
HP Spectre Laptop Review Stefan Mileschin WebNews 0 6th July 2016 15:01
HP Spectre One Review @ TechReviewSource.com Stefan Mileschin WebNews 0 22nd December 2012 07:35
HP Spectre XT 13 inch @ ocaholic Stefan Mileschin WebNews 0 4th October 2012 10:18
HP Envy 14 Spectre @ ocaholic Stefan Mileschin WebNews 0 8th June 2012 08:38
BitFenix Spectre Pro Fan Review @ OCC Stefan Mileschin WebNews 0 7th June 2012 09:04

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off


All times are GMT +1. The time now is 19:27.


Powered by vBulletin® - Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.
SEO by vBSEO