Главная
Study mode:
on
1
Intro
2
Introduction
3
Welcome
4
Daniel Goose
5
Cache
6
Meltdown Attack
7
Technical Details
8
Future Work
9
ZombieLoad Cache
10
Domino Attack
11
Credit Card Attack
12
Variants
13
Mitigation
14
No Variants
15
Fast Variant
16
Time Line
17
Faults
18
Conclusion
19
Questions
Description:
Explore the ZombieLoad attack, a powerful vulnerability affecting most Intel CPUs, in this 56-minute conference talk from the 36C3 event. Learn how this attack allows leaking data from various sources, including user processes, kernels, secure enclaves, and even across virtual machines. Discover why ZombieLoad remains effective even on CPUs with Meltdown fixes. Examine the attack's relationship to the original Meltdown vulnerability and compare it to other microarchitectural data-sampling (MDS) attacks. Witness live demonstrations of ZombieLoad's capabilities, including monitoring browsing behavior, stealing cryptographic keys, and leaking root-password hashes on Linux. Discuss the challenges in mitigating ZombieLoad and its implications for hardware vendors, software vendors, and users. Gain insights into the future of Meltdown attacks and potential countermeasures through this comprehensive presentation by security researchers Michael Schwarz, Moritz Lipp, and Daniel Gruss.

ZombieLoad Attack

media.ccc.de
Add to list
0:00 / 0:00