It's 2024 and Intel silicon is still haunted by data-spilling Spectre
ID: 69a677c6-0714-5bcc-9a35-806e1028cb7e
STIX ID: report--69a677c6-0714-5bcc-9a35-806e1028cb7e
Feed Name: The Register (Security)
Threat Score
Researchers at VU Amsterdam released InSpectre Gadget and disclosed Native BHI (CVE-2024-2201), a Spectre-style technique that can bypass Intel's deployed mitigations to leak arbitrary kernel memory on Intel CPU cores (demonstrated by reading /etc/shadow). They published tooling, a gadget database for Linux kernel 6.6-rc4, a paper and demo video; Intel and the Linux kernel have issued updated guidance and patches while AMD and Arm are reported not vulnerable.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
