logo

Researchers Uncover First Native Spectre v2 Exploit Against Linux Kernel

ID: bddf70b0-a56b-5968-aaff-06ad45c1693e

STIX ID: report--bddf70b0-a56b-5968-aaff-06ad45c1693e

Feed Name: The Hacker News

Threat Score
70/100

Date Published: 2024-04-10

Date Updated: 2026-05-05

Author: [email protected] (The Hacker News)

...
...

Researchers disclosed Native Branch History Injection (CVE-2024-2201), described as the first native Spectre v2 exploit against Linux on Intel that can bypass existing mitigations (including unprivileged eBPF and FineIBT) using an "InSpectre Gadget" to find speculative gadgets and leak privileged kernel memory; multiple vendors and hypervisors are impacted, though exploitation requires local CPU resource access.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.