NetCat attack (CVE-2019-11184): steal encrypted SSH keystrokes exploiting DDIO

Intel chipset can be exploited to sniff SSH passwords as they’re typed over the network.

Continue reading “NetCat attack (CVE-2019-11184): steal encrypted SSH keystrokes exploiting DDIO”

CVE-2019-1125, “SWAPGS Attack”: a new speculative execution side-channel attack

Security researchers at Bitdefender disclosed a new way of exploiting a flaw in Intel chips.

Continue reading “CVE-2019-1125, “SWAPGS Attack”: a new speculative execution side-channel attack”

Meltdown and Spectre: what we know about the vulnerabilities in CPUs?

In the last hours, the vulnerabilities of the CPU have had a great prominence even in the non-specialized press.
So, I think that would be useful trying to summarize the situation in a simple way.

Continue reading “Meltdown and Spectre: what we know about the vulnerabilities in CPUs?”