Here's a playlist of Season 5: https://www.youtube.com/watch?v=BRBGuwGihX8&list=PLT85IMqscAlm7n-YV3vszFof-GhJPBtTk
Episode 1: #Spectre
Episode 2: #Meltdown
Episode 3: TEEs
Episode 4: #Foreshadow
Episode 5: #ZombieLoad
Through the season the flatmates try to leak the name of someone (with these attacks), in Ep.5 they are finally successful
https://twitter.com/i/web/status/1638470540162654215
#zombieload #foreshadow #meltdown #spectre
"Many are the strange chances of the world and help oft shall come from the hands of the weak when the Wise falter." - #Mithrandir
#quote #TheSilmarillion #foreshadow
#foreshadow #thesilmarillion #quote #Mithrandir
SIM Swapper Abducted, Beaten, Held for $200k Ransom https://krebsonsecurity.com/2022/09/sim-swapper-abducted-beaten-held-for-200k-ransom/ #violence-as-a-service #Ne'er-Do-WellNews #SIMSwapping #SIMswapping #Foreshadow #Jarik
#violence #ne #simswapping #foreshadow #jarik
SIM Swapper Abducted, Beaten, Held for $200k Ransom - A Florida teenager who served as a lackey for a cybercriminal group that specializ... https://krebsonsecurity.com/2022/09/sim-swapper-abducted-beaten-held-for-200k-ransom/ #violence-as-a-service #neer-do-wellnews #simswapping #foreshadow #jarik
#jarik #foreshadow #simswapping #neer #violence
RT @madhavik2
#vss365 #prompt #foreshadow
Veils of muted pain
rustling restlessly
on her drawn visage
#foreshadow my fall from grace
Cold tendrils of dread
slithering surreptitiously
into my bleak heart
vouch for a fate I cannot escape
#Poem #Writing #flexvss #vssliminal #poetrycommunity #foreshadow #prompt #vss365
#GrazUniversity: « #SpeculativeDereferencing of Registers: Reviving #Foreshadow »
« we show that the attribution to a prefetching mechanism is fundamentally incorrect in all previous papers describing or exploiting this effect […] leading to incorrect conclusions and ineffectiveness of proposed defenses. The effect exploited in all of these papers is, in fact, caused by speculative dereferencing of user-space registers in the #kernel. »
https://arxiv.org/pdf/2008.02307.pdf
#InfoSec
#infosec #kernel #foreshadow #SpeculativeDereferencing #GrazUniversity
RT @RedHat@twitter.com: It's not #Spectre. It's not #Meltdown. It's #L1TerminalFault and #Foreshadow. Read more about the latest #security vulnerabilities to impact modern #microprocessors on the #RedHat blog: https://red.ht/2OE15LR
#spectre #meltdown #l1terminalfault #foreshadow #security #microprocessors #redhat
RT @reykfloeter@twitter.com Theo de Raadt on the impact of the Intel #Foreshadow #L1TF on #OpenBSD. “We asked repeatedly, but Intel provided no advance notice. We did not even receive replies to our requests for dialogue. On a side note, AMD cpus are not vulnerable to this problem.”
New week, new speculative execution attack variants. They are called #Foreshadow and Foreshadow-NG. Intel calls the attacks L1 Terminal Fault.
Quote from the NG paper:
“Foreshadow-NG attacks completely bypass the virtual memory abstraction by directly exposing cached physical memory contents to unprivileged applications and guest virtual machines.”
Papers:
https://foreshadowattack.eu/foreshadow.pdf
https://foreshadowattack.eu/foreshadow-NG.pdf
Intel:
https://software.intel.com/security-software-guidance/software-guidance/l1-terminal-fault
Further info:
https://foreshadowattack.eu/
Looks like there's quite a few more commits in upstream #FreeBSD, addressing #foreshadow and network security issues.
Expect binary updates to be published by #HardenedBSD for 12-CURRENT/amd64 and 12-CURRENT/arm64 later this evening.
#freebsd #foreshadow #hardenedbsd
#Foreshadow is yet another demonstration why virtualization does not enhance security.
One more: apparently there is a not yet published Meltdown variant called #Foreshadow.