Aviation weather for Trat airport (Thailand) is “VTBO 110400Z 03011KT 9999 FEW020 SCT100 33/22 Q1014” : See what it means on https://www.bigorre.org/aero/meteo/vtbo/en #tratairport #airport #thailand #vtbo #tdx #metar #aviation #aviationweather #avgeek vl
Trat airport (Thailand) aviation weather and informations VTBO TDX

Aviation weather with TAF and METAR, Maps, hotels and aeronautical information for Trat airport (Thailand)

Bigorre.org
Aviation weather for Trat airport (Thailand) is “VTBO 180500Z 24005KT 7000 FEW020 28/24 Q1010” : See what it means on https://www.bigorre.org/aero/meteo/vtbo/en #tratairport #airport #thailand #vtbo #tdx #metar #aviation #aviationweather #avgeek vl
Trat airport (Thailand) aviation weather and informations VTBO TDX

Aviation weather with TAF and METAR, Maps, hotels and aeronautical information for Trat airport (Thailand)

Bigorre.org
La @upc.edu arriba a les 6.000 tesis al repositori #TDX amb: 📓 "Neural network-based data processing for satellite imagery in small satellite earth observation missions" 🧑‍🎓 David Llaveria Godoy 📡 Teoria del Senyal i Comunicacions 👉 http://hdl.handle.net/10803/695367
Aviation weather for Trat airport (Thailand) is “VTBO 120400Z 24003KT 8000 VCSH FEW016CB SCT020 31/27 Q1011” : See what it means on https://www.bigorre.org/aero/meteo/vtbo/en #tratairport #airport #thailand #vtbo #tdx #metar #aviation #aviationweather #avgeek vl
Trat airport (Thailand) aviation weather and informations VTBO TDX

Aviation weather with TAF and METAR, Maps, hotels and aeronautical information for Trat airport (Thailand)

Bigorre.org
Aviation weather for Trat airport (Thailand) is “VTBO 120200Z 06002KT 7000 FEW020 30/28 Q1012” : See what it means on https://www.bigorre.org/aero/meteo/vtbo/en #tratairport #airport #thailand #vtbo #tdx #metar #aviation #aviationweather #avgeek vl
Trat airport (Thailand) aviation weather and informations VTBO TDX

Aviation weather with TAF and METAR, Maps, hotels and aeronautical information for Trat airport (Thailand)

Bigorre.org
How “verified #privacy ” can’t be verified
in this post, we explore how verified privacy, a VPN provider, is a total sham.
#privacy #security #vpn #kyc #intel #sgx #ime #tdx #scam #opsec #itsec #comsec https://blindsoft.net/blog/vp.html
This is a great paper on the status of remote attestation of confidential VMs in public clouds. tl;dr None allow you to independently verify that you run the OS you think you run. But shoutout to AWS for having a reproducible build of their firmware! https://systex24.github.io/papers/systex24-final21.pdf #tdx #sev #aws #azure #gcp

And, once again, "trusted computing" should not be trusted…

L. Wilke et al, "TDXdown: Single-Stepping and Instruction Counting Attacks against Intel TDX"¹

[…]

Intel recently launched Intel TDX, its second generation TEE, which protects whole virtual ma- chines (VMs). To minimize the attack surface to side-channels, TDX comes with a dedicated single-stepping attack countermeasure.
In this paper, we systematically analyze the single-stepping coun- termeasure of Intel TDX and show, for the first time, that both, the built-in detection heuristic as well as the prevention mechanism, can be circumvented. We reliably single-step TDX-protected VMs by deluding the TDX security monitor about the elapsed processing time used as part of the detection heuristic. Moreover, our study reveals a design flaw in the single-stepping countermeasure that turns the prevention mechanism against itself: An inherent side- channel within the prevention mechanism leaks the number of instructions executed by the TDX-protected VM, enabling a novel attack we refer to as StumbleStepping. Both attacks, single-stepping and StumbleStepping, work on the most recent Intel TDX enabled Xeon Scalable CPUs.

Using StumbleStepping, we demonstrate a novel end-to-end at- tack against wolfSSL’s ECDSA implementation, exploiting a con- trol flow side-channel in its truncation-based nonce generation algorithm. We provide a systematic study of nonce-truncation im- plementations, revealing similar leakages in OpenSSL, which we exploit with our single-stepping primitive. Finally, we propose de- sign changes to TDX to mitigate our attacks.

[…]

#TDX #TrustedComputing #Intel
__
¹ https://uzl-its.github.io/tdxdown/

TDXdown: Single-Stepping and Instruction Counting Attacks against Intel TDX

TDXdown presents two attacks on TDX’s single-stepping countermeasure and uses them to recover ECDSA keys via a new weakness in nonce generation of OpenSSL and wolfSSL.

Single-Stepping and Instruction Counting Attacks against Intel TDX

#BSI WID-SEC-2024-3126: [NEU] [niedrig] #Intel #TDX #Module #Firmware: Schwachstelle ermöglicht Offenlegung von Informationen

Ein lokaler Angreifer kann eine Schwachstelle in Intel TDX Module Firmware ausnutzen, um Informationen offenzulegen.

https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2024-3126

Warn- und Informationsdienst

I'm still saddened by all the work that goes into supporting TDX instead of building lasting trusted computing for x86. See my earlier rants: https://x86.lol/generic/2023/06/28/intel-tdx-2.html #kvmforum #kvm #linux #tdx
Intel TDX Doesn’t Protect You from the Cloud

This post is a continuation of my previous post about Intel TDX. It’s worth a read before reading this post. As before, I’m not going to introduce TDX itself. If you need a refresher, Intel has good overview material available.

x86.lol