New 'CacheOut' Attack Leaks Data from Intel CPUs, VMs and SGX Enclave

Researchers demonstrated a new speculative execution vulnerability, dubbed 'CacheOut' assigned CVE-2020-0549, in Intel processors that could allow attackers to leak targeted sensitive data from OS kernel, co-resident virtual machines, and even stored within Intel's secured SGX enclave.

New 'CacheOut' Attack Leaks Data from Intel CPUs, VMs and SGX Enclave

Researchers demonstrated a new speculative execution vulnerability, dubbed 'CacheOut' assigned CVE-2020-0549, in Intel processors that could allow attackers to leak targeted sensitive data from OS kernel, co-resident virtual machines, and even stored within Intel's secured SGX enclave.

New ZombieLoad v2 Attack Affects Intel's Latest Cascade Lake CPUs

ZombieLoad variant 2 of the side-channel MDS vulnerabilities affects the most recent Intel CPUs, including the latest Cascade Lake, which are otherwise resistant against attacks like Meltdown, Foreshadow and other MDS variants (RIDL and Fallout)

Okay, basically you are telling me you spent a year preparing for this publication, but somehow didn't expect that I, a simple user, might want to get a yes-or-no answer to the following question:

"I installed Intel microcode version 20190312. Am I safe from ... [hand gestures] all that stuff?"

#cpu #intel #ridl #zombieload #fallout #mdsattacks