Allow me to summarize x86 side channel attacks: Spectre v1: speculation is insecure by design Spectre v2: secure branch prediction matters Meltdown: Intel are dumbasses L1TF: Intel are monumental, inexcusable dumbasses PortSmash: hyperthreading is insecure by design
-
-
It’s 100% about when you check privileges in the TLB access pipeline. If you check eagerly you are fine, lazily —> Meltdown.
-
What I mean is the problem isn't the TLB itself, it's what you do with the data when the TLB hits but you don't pass the privilege check. They should be eagerly dropping/poisoning it instead of steamrolling forward on privileged data.
- Show replies
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.