When an authentication key is obtained, an attacker can create SGX signatures that look real.This also reduces the protection of 'group signatures', which ensures the anonymity of important data storage areas.Group signatures separate this area from the signature only, making it difficult to penetrate the region or create fake signatures.'The core that makes SGX reliable is that this lock never leaves SGX'.
Intel evaluates Foreshadow as 'very serious' and confirms it affects all processors with SGX, while Atom CPUs do not.The list below is for Intel itself.
To ensure system safety before Foreshadow will need to fix both software (OS, VM, VMM .) and microcode (hardware firmware, BIOS).
How to protect your computer against a Foreshadow security vulnerability
Intel said it has released a microcode update for its partners since May 6 and is in the process of rolling out remedies for affected processors.They hope there will be no significant impact on CPU speed.System and software manufacturers will release these microcode via BIOS update.It is also necessary to patch both OS and VMM.
See more: