Security News

Intel Pays $100,000 Bounty for New Spectre Variants
2018-07-11 05:13

Researchers have discovered new variations of the Spectre attack and they received $100,000 from Intel through the company’s bug bounty program. The new flaws are variations of Spectre Variant 1...

New Spectre-like attack uses speculative execution to overflow buffers
2018-07-10 21:00

Research is continuing to find new attack vectors.

Another Spectre CPU vulnerability among Intel's dirty dozen of security bug alerts today
2018-07-10 17:00

Chipzilla preps for quarterly public patch updates Exclusive Intel will today emit a dozen security alerts for its products and code – including details of another vulnerability within the Spectre...

Rowhammer returns, Spectre fix unfixed, Wireguard makes a new friend, and much more
2018-06-30 07:01

And NSA can't stop slurping your phone records Roundup This week we dealt with buggered bookies, trouble at Ticketmaster, and a compromised Linux build from Gentoo.…

WebAssembly Changes Could Ruin Meltdown and Spectre Browser Patches
2018-06-27 18:26

The planned threading in shared memory update gives bad actors a way around the timer mitigations released by browser vendors.

Oracle gets busy with Lazy FPU fix, adds more Spectre-protectors
2018-06-26 04:58

Oracle Linux and VM get their innoculations Oracle has released fixes for Spectre v3a, Spectre v4, and the “Lazy FPU” vulnerability.…

How opaque WebAssembly code could increase the risk of Spectre attacks online
2018-06-25 13:12

After the discovery of Spectre and Meltdown attacks, browser creators added new protections to defend against attacks. But WebAssembly code might undo all their hard work.

Oracle Patches New Spectre, Meltdown Vulnerabilities
2018-06-25 04:35

Oracle announced on Friday that it has started releasing software and microcode updates for products affected by the recently disclosed variants of the Spectre and Meltdown vulnerabilities. read more

OpenBSD Disables Intel Hyper-Threading to Prevent Spectre-Class Attacks
2018-06-20 10:03

Security-oriented BSD operating system OpenBSD has decided to disable support for Intel's hyper-threading performance-boosting feature, citing security concerns over Spectre-style timing attacks....

Boffins offer to make speculative execution great again with Spectre-Meltdown CPU fix
2018-06-16 01:09

Good thing too because Intel's planned chip changes may break Google's Retpoline A group of computer science researchers has proposed a way to overcome the security risk posed by speculative...