New DDRop Attack Breaks Intel TDX and AMD SEV-SNP Confidential Computing
-
cross-posted from: https://lemmy.sdf.org/post/59167483
Requires physical access:
The attack requires an attacker who already controls the server's software and can briefly access the machine to insert a small circuit board, called an interposer, between the processor and a memory module.
So not like Spectre or Meltdown. I suspect we'll only see more and more vulnerabilities like this exposed as LLMs are used by capable security researchers and computer criminals to reduce the amount of work required to explore concepts that wouldn't have been worthwhile in the past.
New DDRop Attack Breaks Intel TDX and AMD SEV-SNP Confidential Computing
DDRop uses server control and a DDR5 interposer to replay stale encrypted data in Intel TDX, Scalable SGX, and AMD SEV-SNP.
The Hacker News (thehackernews.com)
-
cross-posted from: https://lemmy.sdf.org/post/59167483
Requires physical access:
The attack requires an attacker who already controls the server's software and can briefly access the machine to insert a small circuit board, called an interposer, between the processor and a memory module.
So not like Spectre or Meltdown. I suspect we'll only see more and more vulnerabilities like this exposed as LLMs are used by capable security researchers and computer criminals to reduce the amount of work required to explore concepts that wouldn't have been worthwhile in the past.
New DDRop Attack Breaks Intel TDX and AMD SEV-SNP Confidential Computing
DDRop uses server control and a DDR5 interposer to replay stale encrypted data in Intel TDX, Scalable SGX, and AMD SEV-SNP.
The Hacker News (thehackernews.com)
What's remarkable is that they can extend the trace length without DDR5 timings shitting the bed lol. Can't even put 4 sticks in most boards without spooky interposers.
-
cross-posted from: https://lemmy.sdf.org/post/59167483
Requires physical access:
The attack requires an attacker who already controls the server's software and can briefly access the machine to insert a small circuit board, called an interposer, between the processor and a memory module.
So not like Spectre or Meltdown. I suspect we'll only see more and more vulnerabilities like this exposed as LLMs are used by capable security researchers and computer criminals to reduce the amount of work required to explore concepts that wouldn't have been worthwhile in the past.
New DDRop Attack Breaks Intel TDX and AMD SEV-SNP Confidential Computing
DDRop uses server control and a DDR5 interposer to replay stale encrypted data in Intel TDX, Scalable SGX, and AMD SEV-SNP.
The Hacker News (thehackernews.com)
great. we are gonna need it to jailbreak our own computers.
-
What's remarkable is that they can extend the trace length without DDR5 timings shitting the bed lol. Can't even put 4 sticks in most boards without spooky interposers.
it's amazing what you can accomplish if you had the epstein classes' resources at your disposal.
Ciao! Sembra che tu sia interessato a questa conversazione, ma non hai ancora un account.
Stanco di dover scorrere gli stessi post a ogni visita? Quando registri un account, tornerai sempre esattamente dove eri rimasto e potrai scegliere di essere avvisato delle nuove risposte (tramite email o notifica push). Potrai anche salvare segnalibri e votare i post per mostrare il tuo apprezzamento agli altri membri della comunità.
Con il tuo contributo, questo post potrebbe essere ancora migliore 💗
Registrati Accedi
Citiverse è un progetto che si basa su NodeBB ed è federato! | Categorie federate | Chat | 📱 Installa web app o APK | 🧡 Donazioni | Privacy Policy