A new vulnerability named "Indirector" has been discovered in Intel CPUs, affecting models like Raptor Lake and Alder Lake. This flaw allows attackers to exploit the Indirect Branch Predictor (IBP) and Branch Target Buffer (BTB), components that predict the target addresses of branch instructions. By doing so, they can launch highly precise branch target injection attacks, potentially hijacking the control flow of a program and causing it to execute arbitrary code, leading to data leaks. Intel was notified in February 2024 and advised other vendors about the issue. It confirmed that existing mitigation strategies are effective against this vulnerability, suggesting no new measures are needed. However, it recommends using the Indirect Branch Predictor Barrier (IBPB) more aggressively and enhancing the Branch Prediction Unit (BPU) design with more complex tags, encryption, and randomization.

https://indirector.cpusec.org/index_files/Indirector_USENIX_Security_2024.pdf

https://www.intel.com/content/www/us/en/developer/articles/technical/software-security-guidance/technical-documentation/indirect-branch-predictor-barrier.html

#cybersecurity #intel #vulnerability #cpu #indirector #ibp #btb #ibpb

Indirector: falla critica CPU Intel Raptor Lake/Alder Lake

Nuova vulnerabilità Indirector nei processori Intel Raptor Lake e Alder Lake sfruttano debolezze in componenti chiave. Dati sensibili a rischio.

Gomoot : tecnologia e lifestyle Scopri le ultime novità in fatto di hardware,tecnologia e altro

「最新の #Intel #CPU が新しい #Indirector #サイドチャネル 攻撃の影響を受ける 」: #BLEEPINGCOMPUTER

#Raptor #Lake 世代や #Alder #Lake 世代のチップを含む最新の Intel プロセッサは、「インダイレクタ」と呼ばれる新しいタイプの高精度 #ブランチ ターゲット インジェクション ( #BTI ) 攻撃の影響を受けやすく、CPU から機密情報を盗むために使用される可能性があります。

Indirector は、最新の Intel CPU に搭載されている 2 つのハードウェア コンポーネントである Indirect Branch Predictor (IBP) と Branch Target Buffer (BTB) の欠陥を悪用して、データ抽出のための投機的実行を操作します。 」

https://www.bleepingcomputer.com/news/security/latest-intel-cpus-impacted-by-new-indirector-side-channel-attack/

#prattohome #BLEEPINGCOMPUTER

Latest Intel CPUs impacted by new Indirector side-channel attack

Modern Intel processors, including chips from the Raptor Lake and the Alder Lake generations are susceptible to a new type of a high-precision Branch Target Injection (BTI) attack dubbed 'Indirector,' which could be used to steal sensitive information from the CPU.

BleepingComputer