#Linux Will Stop Randomizing Per-CPU Entry Area When #KASLR Is Not Active
https://www.phoronix.com/news/Linux-Random-Per-CPU-Entry-ASLR
Original tweet : https://twitter.com/phoronix/status/1640020726924161024
I've added support for #EntryBleed prefetch #KASLR bypass (CVE-2022-4543) to [KASLD](https://github.com/bcoles/kasld).
Should work for Intel x86_64 CPUs (with KPTI enabled or disabled) and AMD x86_64 CPUs with KPTI disabled.
A new ETW event, […] that could point at various suspicious behaviors of #KASLR bypasses
#kaslr #offensivesecurity #redteam #blueteam #windowssecurity #edr
This Week in Security: Secure Boot Bypass, Attack on Titan M, KASLR Weakness - It’s debatable just how useful Secure Boot is for end users, but now there’s yet a... - https://hackaday.com/2022/08/19/this-week-in-security-secure-boot-bypass-attack-on-titan-m-kaslr-weakness/ #thisweekinsecurity #hackadaycolumns #securityhacks #attackontitan #kaslr #sonic #news
#news #sonic #kaslr #attackontitan #securityhacks #hackadaycolumns #thisweekinsecurity
This Week in Security: Secure Boot Bypass, Attack on Titan M, KASLR Weakness
https://hackaday.com/2022/08/19/this-week-in-security-secure-boot-bypass-attack-on-titan-m-kaslr-weakness/
#ThisWeekinSecurity #HackadayColumns #SecurityHacks #AttackonTitan #KASLR #sonic #News
#ThisWeekinSecurity #HackadayColumns #SecurityHacks #AttackOnTitan #kaslr #sonic #news
#InfoSec #Linux
> Function Granular #KASLR
https://lwn.net/Articles/824307/
https://lore.kernel.org/lkml/20211223002209.1092165-1-alexandr.lobakin@intel.com/
#InfoSec #exploit
> Writing a #Linux Kernel Remote in 2022
> we examine what goes into remotely exploiting the Linux kernel in 2022, highlighting the main hurdles as well as the differences and similarities with local exploitation.
> For a long while, the general consensus has been #KASLR is more of a nuisance than a serious mitigation for local exploitation. However, the dynamic changes significantly for remote exploitation; the attack surface is drastically reduced.
https://blog.immunityinc.com/p/writing-a-linux-kernel-remote-in-2022/
#kaslr #linux #exploit #infosec