New Firmware Vulnerabilities Discovered in Spectre Attack Study

New Firmware Vulnerabilities Discovered in Spectre Attack Study

code_meltdown_spectre_2

Software vulnerability discovered by security researchers are generally followed by fixes provided by vendors and considered in after sales services. After each scare, they fix the problem and, at least for that moment, one can relax. However, Firmware news related to vulnerabilities is all together a different matter and worry, which is why, a Spectre finding is in news this month. A threat monitor, who once worked with Intel, has reported new findings on vulnerabilities. He now heads Eclypsium, a firmware-attack monitoring solutions provider.

Bloomberg was among a number of sites that reported that the previous chief threat analyst of Intel has discovered new vulnerabilities that develop on the Spectre bugs. These kinds of errors were disclosed by Yuriy Bulygin, a former leader of the advanced threat research team of Intel, who, now, is the CEO of Eclypsium. The study pointed out that it was possible for a hacker to carry out an exploit to have an access to the firmware of a computer.

“This variation of a Spectre- attack can easily recoups information from a protected System Management Mode (SMM) of a computer,” said Bleeping Computer. SMM is an operating mode of x86 CPUs. Catlin Cimpanu further stated that the attack can recoup information and data kept inside a protected CPU area. A group of operating system (OS) developers, named as OSDev.org, stated that the mode was “intended to be utilized by Firmware/BIOS to carry out low-level system management operations when an OS is in function. This novel variant of Spectre can reveal even those contents of memory that cannot be accessed by the OS kernel, in general, stated Liam Tung of ZDNet.

Posted in ,

Shveta Garg

Shveta Garg has been contributing efficiently to Tech Me n You not just her extra ordinary language skill but also her valuable news in the field of science, business and technology. Her extensive experience as a digital marketing expert in Internet marketing has rendered her the ability to delve deep into the historical, contemporary, and unexplored nuances of these segments. In addition, her technical consciousness on these increasingly consumer-oriented industries and her understanding of digital marketing techniques provides her news stories with various angle in it.

Comments are closed, but trackbacks and pingbacks are open.