作者
Daniel Moghimi
发表日期
2023
研讨会论文
The 32th USENIX Security Symposium (USENIX Security 2023)
简介
We introduce Downfall attacks, new transient execution attacks that undermine the security of computers running everywhere across the internet. We exploit the gather instruction on high-performance x86 CPUs to leak data across boundaries of user-kernel, processes, virtual machines, and trusted execution environments. We also develop practical and end-to-end attacks to steal cryptographic keys, program’s runtime data, and even data at rest (arbitrary data). Our findings, exploitation techniques, and demonstrated attacks defeat all previous defenses, calling for critical hardware fixes and security updates for widely-used client and server computers.
引用总数
学术搜索中的文章
D Moghimi - 32nd USENIX Security Symposium (USENIX Security …, 2023