Our newest research project is finally public! We can load malicious microcode on Zen1-Zen4 CPUs!
https://github.com/google/security-research/security/advisories/GHSA-4xq7-4mgh-gp6w
=> More informations about this toot | More toots from nspace@infosec.exchange
@nspace Looking great! Any plans for releasing more details?
=> More informations about this toot | More toots from infosecdj@infosec.exchange
@infosecdj yeah! There will be more details in March.
=> More informations about this toot | More toots from nspace@infosec.exchange
@nspace Sweet, looking forward to that.
=> More informations about this toot | More toots from infosecdj@infosec.exchange
@nspace "we will not be sharing full details at this time in order to give users time to re-establish trust on their confidential-compute workloads"
this assumes there was ever trust in confidential compute
=> More informations about this toot | More toots from Rairii@labyrinth.zone
@nspace
"Insecure hash function"...
Which hash would they happen to be using now? 😀
=> More informations about this toot | More toots from wdormann@infosec.exchange
@wdormann can't say for now but there will be more details in March
=> More informations about this toot | More toots from nspace@infosec.exchange This content has been proxied by September (3851b).Proxy Information
text/gemini