Security News

WannaCry-hero Hutchins' trial date set, Microsoft readies Google's Spectre V2 fix for Windows 10, Coinhive axed, and more
2019-03-02 11:14

PS: Update Adobe ColdFusion, Cisco WebEx Meetings, Nvidia drivers with security fixes Roundup Here's your weekend rapid-fire roundup of infosec news, ahead of next week's RSA Conference, beyond...

Ready for another fright? Spectre flaws in today's computer chips can be exploited to hide, run stealthy malware
2019-02-27 06:08

Honey, I've shrunk the spyware and concealed it with speculative execution Spectre – the security vulnerabilities in modern CPUs' speculative execution engines that can be exploited to steal...

Google: Software is never going to be able to fix Spectre-type bugs
2019-02-23 17:30

Researchers also devise a Spectre-like attack with no known mitigation.

Data-spewing Spectre chip flaws can't be killed by software alone, Google boffins conclude
2019-02-18 07:05

While browsers have got their act together, any other apps interpreting user-supplied code need to be aware of this Google security researchers have analyzed the impact of the data-leaking Spectre...

Boffin suggests taking the ostrich approach for Spectre-Meltdown-grade processor flaws, other security holes: Don't say anything public – zip it
2019-02-04 22:36

Prof asks: What good comes from letting everyone know a vulnerability exists? A computer engineering professor has an interesting idea for how to handle the public disclosure of serious...

Boffin suggests Trappist monk approach for Spectre-Meltdown-grade processor flaws, other security holes: Don't say anything public – zip it
2019-02-04 22:36

Prof asks: What good comes from letting everyone know a vulnerability exists? A computer engineering professor has an interesting idea for how to handle the public disclosure of serious...

Spectre and Meltdown explained: New variants and more efficient patches
2019-02-01 20:32

Learn about these uniquely dangerous vulnerabilities as TechRepublic's James Sanders discusses up-to-date info on the latest variants and best mitigation strategies to minimize performance impact.

Spectre and Meltdown explained: A comprehensive guide for professionals
2019-02-01 13:52

Staying up to date on Spectre and Meltdown can be challenging. This guide includes in-depth explanations about these uniquely dangerous security vulnerabilities and the best mitigation solutions.

A year after Spectre and Meltdown, how well do patches work?
2018-12-21 11:00

Attempts to mitigate the landmark vulnerabilities have caused crashes, sudden reboots, and performance degradations. Here's the progress report on the Spectre and Meltdown solution.

In case you're not already sick of Spectre... Boffins demo Speculator tool for sniffing out data-leaking CPU holes
2018-12-07 23:59

First proof-of-concept, SplitSpectre, requires fewer instructions in victim Analysis You've patched your Intel, AMD, Power, and Arm gear to crush those pesky data-leaking speculative execution...