logo

Researchers determine old vulnerabilities pose real-world threat to sensitive data in public clouds

ID: bd60eb1a-78df-506c-8669-d680d6a5034d

STIX ID: report--bd60eb1a-78df-506c-8669-d680d6a5034d

Feed Name: CyberScoop

Threat Score
55/100

Date Published: 2025-08-11

Date Updated: 2026-04-21

Author: Tim Starks

...
...

Researchers presented a practical attack called "L1TF Reloaded" that reuses a seven-year-old transient-execution CPU vulnerability to realistically leak private data from public clouds; they tested on dedicated hosts in Google Cloud and AWS, coordinated disclosure led to patches and bounties, and the report warns that partial mitigations leave cloud fleets with older CPUs exposed.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.