New dangerous vulnerability in Intel CPU: Works like Specter and Meltdown, threatening all PCs and the cloud
An extremely serious new class of Intel chip vulnerabilities has been discovered by security researchers at Graz University of Technology, if successful exploitation of the bad guys can take advantage of it to steal sensitive information online. Next from the processor.
The new vulnerability is made up of 4 errors and is named "ZombieLoad". It is worrisome that hackers can even take advantage of ZombieLoad on cloud phone servers to do bad purposes.
Security researchers discovered ZombieLoad a month ago and immediately told Intel.
Currently, Intel has completed patching the motherboard BIOS to fix this critical error. However, unlike Windows 10 auto-patching, Asus or MSI and other mainboard manufacturers will have to create their own BIOS to match their product line so that users can download it and go to the machine.
This vulnerability affects nearly all computers using Intel chips from 2011 to the present.
Apple and Google have also released new updates to patch Zombieload. Microsoft also said it will release the patch as soon as possible.
Researchers have said that until now, there has been no case where Zombieload has been exploited by a bad person to infiltrate a personal computer.
Not only Zombieload, but in fact there are many serious security errors, taking advantage of the process of running CPU processes that users 'might' need (speculative execution) to increase processing speed. All current CPU generations are integrated with this feature.
In 2018, when researchers discovered Specter and Meltdown, hackers also took advantage of this feature to perform attacks.
Intel said that Zombieload patches will make the CPU slower than before due to the speculative execution feature will be more tightly controlled. Specific performance on personal computers can be reduced by up to 3%, while on data environments can be up to 9%. However, users will not recognize this change.
You should read it
- Microsoft rewards $ 250,000 for any talent that discovers the new Meltdown and Specter vulnerabilities
- Overview of vulnerabilities on Intel, AMD, ARM chips: Meltdown and Specter
- The new vulnerability on Intel allows hackers to take control of your computer within 30 seconds
- Foreshadow - the fifth most serious security hole in the CPU in 2018
- Serious security vulnerability on Intel chips
- Intel continues to have a Plundervolt security vulnerability that reduces CPU voltage
- The NSA identifies 4 'critical' security vulnerabilities of cloud systems
- AMD and ARM both warned of security flaws like Intel processors
May be interested
- Intel claims: New security updates help the computer to be 'immune' to Meltdown and Specterintel claims that its new security patches will help the computer be immune to two extremely serious security bugs, attracting users' attention during the past two days: meltdown and specter. also in this statement, the company confirmed that by the end of the week, 90% of computers will be protected.
- Intel released Microcode for CPU Linux to fix Meltdown and Specteron january 8, intel released micro-data files for linux microprocessors to mitigate the effects of meltdown and specter vulnerabilities.
- Intel's chip has eight new serious vulnerabilitiesseveral weeks ago, google project zero security experts discovered eight new vulnerabilities in intel's chip design, which could directly lead to specter and meltdown, two vulnerabilities that negatively impacted performance. whole computer system.
- Origin of the name and logo of Meltdown and Specter - Melting and Ghoststhis article will only answer one question: why are they named so?
- Microsoft released an emergency patch for Windows, turned off the Specter patch, causing a drop in system performancemicrosoft's newly released emergency update for windows has removed the patch for two serious vulnerabilities specter and meltdown released since the beginning of the month.
- Microsoft released an Intel chip patchmicrosoft has just released an unusual security update for windows to fix bugs on intel, amd and arm chips recently.
- The new vulnerability on Intel allows hackers to take control of your computer within 30 secondswhile intel's meltdown and specter vulnerabilities have not been completely overcome, the world faces a new security vulnerability that allows hackers to take complete control of the user's device and attack time within 30 seconds.
- This is a way to protect Linux Mint from Meltdown and Specternew linux developers have officially voiced the two vulnerabilities of meltdown and specter, suggesting ways to help users protect their computers.
- PC with Skylake and Kaby Lake CPUs failed to restart automatically after installing Meltdown & Specter patchnavin shenoy, intel's vice president, confirmed that pc systems using skylake and kaby lake high-end cpus after being patched with two serious security holes, meltdown and specter, also suffered from self-initiated errors. move again.
- Intel faces a new vulnerability called BranchScopenew researchers have discovered a new off-the-shelf attack technique called branchscope that could affect all devices using intel processors.