Meltdown & Spectre

Two huge security issue's found in almost all modern processors. How do they work and what can we do about it? Let's find out!

Make sure that you install all the latest patches for your operating system & software!

Sources

Lipp, M., Schwarz, M., Gruss, D., Prescher, T., Haas, W., Mangard, S., … Hamburg, M. (2018). Meltdown. ArXiv Preprint ArXiv:1801.01207. Retrieved from https://arxiv.org/pdf/1801.01207

Kocher, P., Genkin, D., Gruss, D., Haas, W., Hamburg, M., Lipp, M., … Yarom, Y. (2018). Spectre Attacks: Exploiting Speculative Execution. ArXiv Preprint ArXiv:1801.01203. Retrieved from https://arxiv.org/pdf/1801.01203

Meltdown and Spectre - Vulnerabilities in modern computers leak passwords and sensitive data. (2018). Graz University of Technology. Retrieved from https://meltdownattack.com

Madden, J. (2018). Meltdown, Spectre, and mobile: A reminder that Android security patches exist. Retrieved from http://www.brianmadden.com/opinion/Meltdown-Spectre-and-mobile-A-reminder-that-Android-security-patches-exist

Spectre & Meltdown: Tapping Into the CPU's Subconscious Thoughts. (2018). DS9A.NL. Retrieved from https://ds9a.nl/articles/posts/spectre-meltdown/

Crowe, J. (2018). The Meltdown and Spectre CPU Bugs, Explained. Retrieved from https://blog.barkly.com/meltdown-spectre-bugs-explained

Weinberger, M. (2018). EXPLAINED: 'Meltdown' and 'Spectre' — the massive Google-discovered security exploits that have Silicon Valley in a tizzy. Business Insider UK. Retrieved from http://uk.businessinsider.com/intel-chip-bug-meltdown-and-spectre-explained-2018-1?r=US&IR=T

Miessler, D. (2018). A Simple Explanation of the Differences Between Meltdown and Spectre. Retrieved from https://danielmiessler.com/blog/simple-explanation-difference-meltdown-spectre/

Sloss, B. T. (2018). Protecting our Google Cloud customers from new vulnerabilities without impacting performance. Google. Retrieved from https://www.blog.google/topics/google-cloud/protecting-our-google-cloud-customers-new-vulnerabilities-without-impacting-performance/

Vulnerability of Speculative Processors to Cache Timing Side-Channel Mechanism. (2018). Arm Limited. Retrieved from https://developer.arm.com/support/security-update

Porup, J. M. (2018). Meltdown and Spectre patches: Where to start and what to expect. CSO. Retrieved from https://www.csoonline.com/article/3246280/hardware/meltdown-and-spectre-patches-where-to-start-and-what-to-expect.html

Like this video? Support me & subscribe to my channel: