Kemo

კორპორაცია Intel

Recommended Posts

Share this post


Link to post
Share on other sites

A new class of Microarchitectural Data Sampling (MDS) Vulnerabilities has been discovered, primarily affecting Intel CPUs, similar to the Spectre and Meltdown vulnerabilities. These are known by the aliases Zombieload, RIDL and Fallout. MDS is a hypothetical vulnerability that requires local privileged execution; as with Spectre and Meltdown, no exploits using this method have yet been detected. Intel has released a Security Advisory on MDS, classifying it as a Medium risk. Microcode and OS updates are being released as the primary mitigation; disabling HyperThreading is not always necessary.

Update: Today's Windows patches have begun to address this vulnerability; CPU microcode updates will be available shortly. The performance impact is noted as "limited", but can be more noticeable if you need to disable HyperThreading.

https://mdsattacks.com/

https://software.intel.com/security-software-guidance/insights/deep-dive-intel-analysis-microarchitectural-data-sampling

https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/ADV190013

Share this post


Link to post
Share on other sites

Update: Today's Windows patches have begun to address this vulnerability; CPU microcode updates will be available shortly. The performance impact is noted as "limited", but can be more noticeable if you need to disable HyperThreading. https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/ADV190013

Update 2: To see whether your system is vulnerable and to what extent, download the MDS Tool found on the middle of this page and run the relevant executable. If you get an error, install this Visual C++ Redistributable Update and try again. For reference, my 9th Gen Intel i7 9700K doesn't come with HyperThreading, I've installed all of the current updates, and my MDSTool results look like this at the moment.

https://mdsattacks.com/

https://www.microsoft.com/en-us/download/details.aspx?id=48145

i79700K_MDS.jpg

9700 330$ კიდე უფრო კარგი ვარიანტი იქნება 4.6GHZ

Share this post


Link to post
Share on other sites

RIDL vulnerability hits Intel - new Side Channel Attack potentially is worse than Spectre and Meltdown https://www.guru3d.com/news-story/new-ridl-vulnerability-hits-intel-advises-disabling-hyper-threading-below-8th9th-gen-cpus.html

 

Share this post


Link to post
Share on other sites

Share this post


Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now