Thumbnail for video 'Meltdown & Spectre'

← Back to videos

Meltdown & Spectre

Two huge security issue's found in almost all modern processors. How do they work and what can we do about it? Let's find out!

Make sure that you install all the latest patches for your operating system & software!

Sources

Crowe, J. (2018). The Meltdown and Spectre CPU Bugs, Explained. https://blog.barkly.com/meltdown-spectre-bugs-explained
Kocher, P., Genkin, D., Gruss, D., Haas, W., Hamburg, M., Lipp, M., Mangard, S., Prescher, T., Schwarz, M., & Yarom, Y. (2018). Spectre Attacks: Exploiting Speculative Execution. arXiv Preprint arXiv:1801.01203. https://arxiv.org/pdf/1801.01203
Lipp, M., Schwarz, M., Gruss, D., Prescher, T., Haas, W., Mangard, S., Kocher, P., Genkin, D., Yarom, Y., & Hamburg, M. (2018). Meltdown. arXiv Preprint arXiv:1801.01207. https://arxiv.org/pdf/1801.01207
Madden, J. (2018). Meltdown, Spectre, and mobile: A reminder that Android security patches exist. http://www.brianmadden.com/opinion/Meltdown-Spectre-and-mobile-A-reminder-that-Android-security-patches-exist
Meltdown and Spectre - Vulnerabilities in modern computers leak passwords and sensitive data. (2018). Graz University of Technology. https://meltdownattack.com
Miessler, D. (2018). A Simple Explanation of the Differences Between Meltdown and Spectre. https://danielmiessler.com/blog/simple-explanation-difference-meltdown-spectre/
Porup, J. M. (2018). Meltdown and Spectre patches: Where to start and what to expect. CSO. https://www.csoonline.com/article/3246280/hardware/meltdown-and-spectre-patches-where-to-start-and-what-to-expect.html
Sloss, B. T. (2018). Protecting our Google Cloud customers from new vulnerabilities without impacting performance. Google. https://www.blog.google/topics/google-cloud/protecting-our-google-cloud-customers-new-vulnerabilities-without-impacting-performance/
Spectre & Meltdown: Tapping Into the CPU’s Subconscious Thoughts. (2018). DS9A.NL. https://ds9a.nl/articles/posts/spectre-meltdown/
Vulnerability of Speculative Processors to Cache Timing Side-Channel Mechanism. (2018). Arm Limited. https://developer.arm.com/support/security-update
Weinberger, M. (2018). EXPLAINED: “Meltdown” and “Spectre” — the massive Google-discovered security exploits that have Silicon Valley in a tizzy. Business Insider UK. http://uk.businessinsider.com/intel-chip-bug-meltdown-and-spectre-explained-2018-1?r=US&IR=T