Security News > 2022 > June > Hartzbleed: A New Side-Channel Attack

Hartzbleed: A New Side-Channel Attack
2022-06-20 11:23

Hartzbleed is a new side-channel attack that works against a variety of microprocressors.

Deducing cryptographic keys by analyzing power consumption has long been an attack, but it's not generally viable because measuring power consumption is often hard.

This new attack measures power consumption by measuring time, making it easier to exploit.

With an understanding of how the DVFS feature works, power side-channel attacks become much simpler timing attacks that can be done remotely.

The researchers have dubbed their attack Hertzbleed because it uses the insights into DVFS to expose­or bleed out­data that's expected to remain private.

The researchers said they successfully reproduced their attack on Intel CPUs from the 8th to the 11th generation of the Core microarchitecture.


News URL

https://www.schneier.com/blog/archives/2022/06/hartzbleed-a-new-side-channel-attack.html