Odisha News, Odisha Latest news, Odisha Daily - OrissaPOST
  • Home
  • Trending
  • State
  • Metro
  • National
  • International
  • Business
  • Feature
  • Entertainment
  • Sports
  • More..
    • Odisha Special
    • Editorial
    • Opinion
    • Careers
    • Sci-Tech
    • Timeout
    • Horoscope
    • Today’s Pic
  • Video
  • Epaper
  • News in Odia
  • Home
  • Trending
  • State
  • Metro
  • National
  • International
  • Business
  • Feature
  • Entertainment
  • Sports
  • More..
    • Odisha Special
    • Editorial
    • Opinion
    • Careers
    • Sci-Tech
    • Timeout
    • Horoscope
    • Today’s Pic
  • Video
  • Epaper
  • News in Odia
No Result
View All Result
OrissaPOST - Odisha Latest news, English Daily -
No Result
View All Result

Researchers expose security flaw in Intel processors, again

IANS
Updated: March 11th, 2020, 19:55 IST
in Sci-Tech
0
Intel unveils its first AI-driven neural network chip
Share on FacebookShare on TwitterShare on WhatsAppShare on Linkedin

London: Computer scientists at Belgium’s leading higher education and research university KU Leuven have once again exposed a security flaw in Intel processors that could allow an attacker to acquire sensitive information, such as the victim’s fingerprints or passwords.

In the past couple of years, Intel had had to issue quite a few patches for vulnerabilities that computer scientists at KU Leuven have helped expose.

Also Read

International Space Station ISS Wiki

Elon Musk suggests deorbiting International Space Station within two years

3 days ago
Shubhanshu Shukla

No new date launch date for Axiom-4 mission to ISS yet

4 days ago

“All measures that Intel has taken so far to boost the security of its processors have been necessary, but they were not enough to ward off our new attack,” said Jo Van Bulck from the Department of Computer Science at KU Leuven.

Like the previous attacks, the new technique – dubbed Load Value Injection – targets the ‘vault’ of computer systems with Intel processors: SGX enclaves.

“To a certain extent, this attack picks up where our Foreshadow attack of 2018 left off. A particularly dangerous version of this attack exploited the vulnerability of SGX enclaves, so that the victim’s passwords, medical information, or other sensitive information was leaked to the attacker,” Jo Van Bulck said in a statement released by KU Leuven Tuesday.

“Load Value Injection uses that same vulnerability, but in the opposite direction: The attacker’s data are smuggled – ‘injected’ – into a software programme that the victim is running on their computer. Once that is done, the attacker can take over the entire programme and acquire sensitive information, such as the victim’s fingerprints or passwords.”

The vulnerability was already discovered on April 4, 2019. Nevertheless, the researchers and Intel agreed to keep it a secret for almost a year. Responsible disclosure embargoes are not unusual when it comes to cybersecurity, although they usually lift after a shorter period of time.

“We wanted to give Intel enough time to fix the problem. In certain scenarios, the vulnerability we exposed is very dangerous and extremely difficult to deal with because, this time, the problem did not just pertain to the hardware: The solution also had to take software into account,” Van Bulck said.

“Therefore, hardware updates like the ones issued to resolve the previous flaws were no longer enough. This is why we agreed upon an exceptionally long embargo period with the manufacturer,” Van Bulck added.

The researcher said that Intel ended up taking extensive measures that force the developers of SGX enclave software to update their applications.

“However, Intel has notified them in time. End-users of the software have nothing to worry about: They only need to install the recommended updates,” Van Bulck said.

“Our findings show, however, that the measures taken by Intel make SGX enclave software up to 2 to even 19 times slower,” he added.

In 2018, when researchers at KU Leuven discovered a vulnerabiliy, their attack was dubbed Foreshadow.

In 2019, an attack, dubbed “Plundervolt”, revealed vulnerability. Intel has released updates to resolves both flaws.

(IANS) 

Tags: CybersecurityFingerprintIntelKU Leuvensecurity flaw
ShareTweetSendShare
Suggest A Correction

Enter your email to get our daily news in your inbox.

 

OrissaPOST epaper Sunday POST OrissaPOST epaper

Click Here: Plastic Free Odisha

#MyPaperBagChallenge

Pitabas Tripathy

December 12, 2019
#MyPaperBagChallenge

Adyasha Priyadarsani Sendha

December 12, 2019
#MyPaperBagChallenge

Mandakini Dakua

December 12, 2019
#MyPaperBagChallenge

Aishwarya Ranjan Mohanty

December 12, 2019
#MyPaperBagChallenge

Kamana Singh

December 12, 2019
#MyPaperBagChallenge

Geetanjali Patro

December 12, 2019
#MyPaperBagChallenge

Vandana Singh

December 12, 2019
#MyPaperBagChallenge

Archit Mohapatra

December 12, 2019
#MyPaperBagChallenge

Narendra Kumar

December 12, 2019
#MyPaperBagChallenge

Ipsita

December 12, 2019
#MyPaperBagChallenge

Aman Kumar Barisal

December 12, 2019
#MyPaperBagChallenge

Priyasha Pradhan

December 12, 2019
?????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????
#MyPaperBagChallenge

Dibya Ranjan Das

December 12, 2019
#MyPaperBagChallenge

Jyotshna Mayee Pattnaik

December 12, 2019
#MyPaperBagChallenge

Subhajyoti Mohanty

December 12, 2019
#MyPaperBagChallenge

Sipra Mishra

December 12, 2019
#MyPaperBagChallenge

Lopali Pattnaik

December 12, 2019
#MyPaperBagChallenge

Ankita Balabantray

December 12, 2019
#MyPaperBagChallenge

D Rama Rao

December 12, 2019
#MyPaperBagChallenge

Sarfraz Ahmad

December 12, 2019
#MyPaperBagChallenge

Matrumangal Jena

December 12, 2019
#MyPaperBagChallenge

Manas Samanta

December 12, 2019
#MyPaperBagChallenge

Anasuya Sahoo

December 12, 2019
#MyPaperBagChallenge

Sibarama Khotei

December 12, 2019
#MyPaperBagChallenge

Adrita Bhattacharya

December 12, 2019
#MyPaperBagChallenge

Akshaya Kumar Dash

December 12, 2019
#MyPaperBagChallenge

Surya Sidhant Rath

December 12, 2019
#MyPaperBagChallenge

Anshuman Sahoo

December 12, 2019
#MyPaperBagChallenge

Nishikant Rout

December 12, 2019
#MyPaperBagChallenge

Pratyasharani Ghibela

December 12, 2019

Archives

Editorial

Mid East Great Again

Iran's private message to Israel: ‘Can intervene if military campaign continues in Gaza’
June 16, 2025

For decades, current Israeli Prime Minister Benjamin Netanyahu has been warning about the “existential threat” that a nuclear-armed Iran poses...

Read more

Nameless Doctrine

June 15, 2025

On 12 June, the United Nations General Assembly adopted a resolution demanding an immediate, unconditional and lasting ceasefire in Gaza....

Read more

Graft in ED

June 14, 2025

When a senior Enforcement Directorate (ED) officer gets caught in a graft case, eyebrows go up. But when insiders start...

Read more

Clash of Titans

June 11, 2025

The world is watching with bated breath the fierce showdown between the richest man on earth Elon Musk and the...

Read more
  • Home
  • State
  • Metro
  • National
  • International
  • Business
  • Editorial
  • Opinion
  • Sports
  • About Us
  • Advertise
  • Contact Us
  • Jobs
Developed By Ratna Technology

© 2024 All rights Reserved by OrissaPOST

  • News in Odia
  • Orissa POST Epaper
  • Video
  • Home
  • Trending
  • Metro
  • State
  • Odisha Special
  • National
  • International
  • Sports
  • Business
  • Editorial
  • Entertainment
  • Horoscope
  • Careers
  • Feature
  • Today’s Pic
  • Opinion
  • Sci-Tech
  • About Us
  • Contact Us
  • Jobs

© 2024 All rights Reserved by OrissaPOST

    • News in Odia
    • Orissa POST Epaper
    • Video
    • Home
    • Trending
    • Metro
    • State
    • Odisha Special
    • National
    • International
    • Sports
    • Business
    • Editorial
    • Entertainment
    • Horoscope
    • Careers
    • Feature
    • Today’s Pic
    • Opinion
    • Sci-Tech
    • About Us
    • Contact Us
    • Jobs

    © 2024 All rights Reserved by OrissaPOST