Julien M. · @julm
485 followers · 4935 posts · Server framapiaf.org

" allows attackers to [...] mount -style in the execution domain to repeatedly probe and the address space, craft arbitrary memory read gadgets, and enable reliable exploitation. This works even in face of strong randomization schemes, e.g., the recent or fine-grained schemes based on execute-only memory, and state-of-the-art mitigations against and other transient execution attacks."
vusec.net/projects/blindside/

#infosec #spectre #FGKASLR #kernel #derandomize #speculative #attacks #BROP #blindside

Last updated 5 years ago