In June 2022, a group of researchers from the University of Texas, the University of Illinois Urbana-Champaign, and the University of Washington, have published an article on their website about a new attack they developed called Hertzbleed.
This attack allows attackers to detect variations in the frequency of CPU using something called Dynamic voltage and frequency scaling or DVFS in short, and steal entire cryptographic keys in that way.
Intel’s security advisory states that all Intel processors are affected. We have experimentally confirmed that several Intel processors are affected, including desktop and laptop models from the 8th to the 11th generation Core microarchitecture.
AMD’s security advisory states that several of their desktop, mobile and server processors are affected.
Chapters
---------------
00:00 - Summary Of The Attack
01:07 - What Is The Hertzbleed Attack?
01:35 - What Is DVFS?
02:01 - Who Is Impacted By This Attack?
03:16 - How To Mitigate The Hertzbleed Attack
About Our Expert
----------------------------
Dalibor Gašić
purplesec.us/cyber-security-experts/dalibor-gasic/
Resources
------------------
► Recent Data Breaches: purplesec.us/security-insights/data-breaches/
► Preventing Ransomware Attacks: purplesec.us/identify-prevent-remove-ransomware-at…
► PurpleSec’s Cyber Security Maturity Model: purplesec.us/learn/
► Build A Vulnerability Management Program: purplesec.us/learn/vulnerability-management-progra…
Sources
-------------
► www.intel.com/content/www/us/en/security-center/ad…
► www.amd.com/en/corporate/product-security/bulletin…
► en.wikipedia.org/wiki/Dynamic_frequency_scaling
Related Videos
------------------------
► PACMAN M1 Chip Attack: • PACMAN M1 Chip Attack Explained | Security...
► Cleartrip's Massive Data Breach: • Cleartrip Suffers Massive Data Breach | Se...
► Maui Ransomware Attack: • Maui Ransomware Attacking Healthcare | Sec...
► Conti Ransomware Attack: • Conti Costa Rica Ransomware Attack Explain...
► Kaseya Ransomware Attack: • Kaseya Ransomware Attack Explained: What Y...
► Saudi Aramco $50 Million Data Breach: • Saudi Aramco $50 Million Data Breach Expla...
#Hertzbleed #Intel #AMD
コメント