Skip to content

Intel discloses new L1 Terminal Fault vulnerability

newsroom.intel.com
11 pointsbnjmn1 comment
On HN

Comments

bnjmnOP

Another speculative execution side-channel cache timing vulnerability, a la https://meltdownattack.com

Related disclosure from DigitalOcean: https://blog.digitalocean.com/a-message-about-l1tf/

Intel is evasive about the precise attack scenario, but DigitalOcean reports "an attacker could theoretically use one Droplet to view another Droplet’s memory," implying that the side-channel is invasive (that is, theft of data is possible) rather than cooperative (that is, data can be intentionally leaked between processes, a less harmful sort of side-channel).

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.