Intel Adds Memory Encryption, Firmware Security to Ice Lake Chips - Intel's addition of memory encryption to its upcoming 3rd generation Xeon Scalable processors matc... https://threatpost.com/intel-encryption-security-ice-lake-chips/160083/ #intelplatformfirmwareresilience #speculativeexecutionflaws #totalmemoryencryption #xeonscalableplatform #chiplevelprotection #side-channelattacks #memoryencryption #vulnerabilities #intelsecurity #plundervolt #siliconchip #hardware #meltdown #icelake
Intel Adds Memory Encryption, Firmware Security to Ice Lake Chips

Intel's addition of memory encryption to its upcoming 3rd generation Xeon Scalable processors matches AMD's Secure Memory Encryption (SME) feature.

Threatpost - English - Global - threatpost.com

#NowListening (skip to around 35:00 if you're impatient. but you really shouldn't, it's an excellent talk and/or performance.)
https://media.ccc.de/v/36c3-10883-plundervolt_flipping_bits_from_software_without_rowhammer

#plundervolt

Plundervolt: Flipping Bits from Software without Rowhammer

media.ccc.de
Voltage Glitching (wie bei #PlunderVolt gestern) ist immer wieder eine beliebte Attacke auf Microchips, die man beispielsweise in Autoschlüsseln oder Hardware Wallets findet. @StackSmashing beschreibt, wie man aus dem sicheren (oder nicht) Bereich lesen kann/konnte.
#36C3
S2 Ep21: Plundervolt, domain name gunfight, Facebook snubs Congress – Naked Security Podcast - Latest podcast episode - listen now! more: https://nakedsecurity.sophos.com/2019/12/19/s2-ep21-plundervolt-domain-name-gunfight-facebook-snubs-congress-naked-security-podcast/ #audioandvideo #plundervolt #cybercrime #encryption #facebook #podcast
S2 Ep21: Plundervolt, domain name gunfight, Facebook snubs Congress – Naked Security Podcast

Naked Security
Plundervolt – stealing secrets by starving your computer of voltage - Turns out that if you drop your CPU voltage just enough, it makes mistakes that could let you snea... more: https://nakedsecurity.sophos.com/2019/12/16/plundervolt-stealing-secrets-by-starving-your-computer-of-voltage/ #cve-2019-11157 #vulnerability #side-channel #plundervolt #bwain
Plundervolt – stealing secrets by starving your computer of voltage

Naked Security
December Patch Tuesday blunts WizardOpium attack chain - December 2019’s Patch Tuesday updates are, including a fix for the Windows flaw used in recently d... more: https://nakedsecurity.sophos.com/2019/12/12/december-patch-tuesday-blunts-wizardopium-attack-chain/ #zerodayvulnerability #securitythreats #vulnerability #lazarusgroup #patchtuesday #plundervolt #microsoft #windowsxp #intelsgx #patching #windows #zeroday #chrome #adobe #intel #rdp
December Patch Tuesday blunts WizardOpium attack chain

Naked Security

Nice logo, great work! 🎉

#Plundervolt #Intel #SGX #CVE #firmware

https://plundervolt

Modern Intel CPUs Plagued By Plundervolt Attack - The Intel attack uses a similar technique that gamers commonly use to overclock their CPUs. more: https://threatpost.com/intel-cpus-plundervolt-attack/151006/ #informationdisclosure #privilegeescalation #side-channelattack #vulnerabilities #cve-2019-11157 #vulnerability #intelattack #plundervolt #cpuvoltage #intelsgx #meltdown #spectre #intel
Modern Intel CPUs Plagued By Plundervolt Attack

The Intel attack uses a similar technique that gamers commonly use to overclock their CPUs.

Threatpost - English - Global - threatpost.com
New Plundervolt attack impacts Intel CPUs | ZDNet

Intel desktop, server, and mobile CPUs are impacted. Intel has released firmware patches today.

@kuketzblog wenn Leute nur verstehen würden, dass #SGX oder so keine Lösung zum Speichern von sicherheitsrelevanten Daten ist, siehe: https://github.com/keepassxreboot/keepassxc/issues/1378

#plundervolt

Add SGX-protected memory access to KeePassXC · Issue #1378 · keepassxreboot/keepassxc

Use Intel SGX for sensitive operations involving the encryption/decryption and in-memory storage. This has the ability to provide resistance against memory dumps, protect encryption/decryption keys...