
Sign up to save your podcasts
Or
It's Black Hat and DEFCON week and it wouldn't be a show without the disclosure of a few big bugs. The winner so far seems to be a new exploit found in Intel's SGX memory encryption technology. Per pre-briefing ahead of a talk happening today, security researchers found a flaw in the Advanced Programmable Interrupt Controller (APIC) that allows them to read uninitialized memory that could contain stale data before it's cleared by the CPU. Unlike Spectre and Meltdown, this isn't a side channel attack. It's a flaw in the CPU architecture. This means that attackers can recover data very quickly. Tests showed a 128-bit AES encryption key could be recovered in less than 2 seconds with 94% accuracy and a 1024-bit RSA key could be nabbed in about a minute and a half with 74% accuracy. Intel is saying the exploit is on their 10th, 11th, and 12th gen processors which includes Ice Lake but no mention of Sapphire Rapids. This and more on this week's episode of the Rundown. Head to GestaltIT.com for show notes.
5
33 ratings
It's Black Hat and DEFCON week and it wouldn't be a show without the disclosure of a few big bugs. The winner so far seems to be a new exploit found in Intel's SGX memory encryption technology. Per pre-briefing ahead of a talk happening today, security researchers found a flaw in the Advanced Programmable Interrupt Controller (APIC) that allows them to read uninitialized memory that could contain stale data before it's cleared by the CPU. Unlike Spectre and Meltdown, this isn't a side channel attack. It's a flaw in the CPU architecture. This means that attackers can recover data very quickly. Tests showed a 128-bit AES encryption key could be recovered in less than 2 seconds with 94% accuracy and a 1024-bit RSA key could be nabbed in about a minute and a half with 74% accuracy. Intel is saying the exploit is on their 10th, 11th, and 12th gen processors which includes Ice Lake but no mention of Sapphire Rapids. This and more on this week's episode of the Rundown. Head to GestaltIT.com for show notes.
1,647 Listeners
7,901 Listeners
8,659 Listeners
326 Listeners
152 Listeners
101 Listeners
11,812 Listeners
111,864 Listeners
56,221 Listeners
15 Listeners
485 Listeners