Hacking Livestream #43: Meltdown and Spectre




Length: 2:31:8

A much requested live about recent CPU vulnerabilities. A lot of links below.

https://googleprojectzero.blogspot.ch/

http://pythonsweetness.tumblr.com/post/169166980422/the-mysterious-case-of-the-linux-page-table


http://www.openwall.com/lists/oss-security/2018/01/11/2

Intel Security Issue Update: Initial Performance Data Results for Client Systems


Negative Result: Reading Kernel Memory From User Mode
https://tech.slashdot.org/story/18/01/09/1357228/microsoft-says-no-more-windows-security-updates-unless-avs-set-a-registry-key
https://tech.slashdot.org/story/18/01/09/1759241/microsoft-details-performance-impact-of-spectre-and-meltdown-mitigations-on-windows-systems
Getting a Handle on Meltdown Update Impact, Stay Tuned for Spectre
https://it.slashdot.org/story/18/01/10/1513248/nvidia-gpus-werent-immune-to-spectre-security-flaws-either
Thoughts on Meltdown & Spectre
Getting a Handle on Meltdown Update Impact, Stay Tuned for Spectre
https://www.mail-archive.com/qubes-devel@googlegroups.com/msg02602.html
https://www.crowdstrike.com/blog/chip-flaws-spectre-and-meltdown-are-actually-three-vulnerabilities-and-proving-hard-to-mitigate/
https://www.blog.google/topics/google-cloud/protecting-our-google-cloud-customers-new-vulnerabilities-without-impacting-performance/

Spectre mitigations in MSVC


Meltdown, Spectre, and why hardware can be correct yet insecure
https://www.cs.cornell.edu/people/vickyw/iflow/papers/wra91.pdf
https://lkml.org/lkml/2018/1/22/598
https://blog.cyberus-technology.de/posts/2018-01-03-meltdown.html

source


Leave a Reply

Your email address will not be published. Required fields are marked *