Rocksolid Light

Welcome to Rocksolid Light

mail  files  register  newsreader  groups  login

Message-ID:  

"It is easier to fight for principles than to live up to them." -- Alfred Adler


computers / Security / New chapter of Spectre

SubjectAuthor
* New chapter of SpectreAnonymous
`* New chapter of Spectreanon
 `* New chapter of SpectreGuest
  +* New chapter of Spectreanon
  |`* New chapter of SpectreGuest
  | `- New chapter of Spectretrw
  `* New chapter of Spectreanon
   `- New chapter of Spectreanon

1
New chapter of Spectre

<pj9nam$6i0$1@novabbs.com>

 copy mid

https://news.novabbs.org/computers/article-flat.php?id=337&group=rocksolid.shared.security#337

 copy link   Newsgroups: rocksolid.shared.security
Path: rocksolid2!.POSTED.localhost!not-for-mail
From: retrobbs2@retrobbs.rocksolidbbs.com (Anonymous)
Newsgroups: rocksolid.shared.security
Subject: New chapter of Spectre
Date: Wed, 25 Jul 2018 11:35:50 +0000
Organization: RetroBBS II
Lines: 2
Message-ID: <pj9nam$6i0$1@novabbs.com>
Reply-To: Anonymous <retrobbs2@retrobbs.rocksolidbbs.com>
Mime-Version: 1.0
Content-Type: text/plain; charset=utf-8; format=flowed
Content-Transfer-Encoding: 8bit
Injection-Date: Wed, 25 Jul 2018 11:35:50 -0000 (UTC)
Injection-Info: novabbs.com; posting-host="localhost:127.0.0.1";
logging-data="6720"; mail-complaints-to="usenet@novabbs.com"
User-Agent: FUDforum 3.0.7
X-FUDforum: d41d8cd98f00b204e9800998ecf8427e <416663>
 by: Anonymous - Wed, 25 Jul 2018 11:35 UTC

https://arxiv.org/pdf/1807.07940.pdf

This year is interesting so far...
Posted on RetroBBS II

Re: New chapter of Spectre

<1842ba27a5e941bb93c7835c90755d54@def4.com>

 copy mid

https://news.novabbs.org/computers/article-flat.php?id=341&group=rocksolid.shared.security#341

 copy link   Newsgroups: rocksolid.shared.security
Path: rocksolid2!def3!.POSTED.localhost!not-for-mail
From: anon@anon.com (anon)
Newsgroups: rocksolid.shared.security
Message-ID: <1842ba27a5e941bb93c7835c90755d54@def4.com>
Subject: Re: New chapter of Spectre
Date: Sat, 28 Jul 2018 19:12:34+0000
Organization: def4
In-Reply-To: <pj9nam$6i0$1@novabbs.com>
References: <pj9nam$6i0$1@novabbs.com>
Lines:
Mime-Version: 1.0
Content-Type: text/plain; charset=utf-8; format=flowed
Content-Transfer-Encoding: 8bit
 by: anon - Sat, 28 Jul 2018 19:12 UTC

https://www.heise.de/ct/artikel/Exclusive-Spectre-NG-Multiple-new-Intel-CPU-flaws-revealed-several-serious-4040648.html

This one is more sinister, as you don't need to execute your own code anymore...

Posted on def4.i2p

Re: New chapter of Spectre

<pktdqs$qsl$1@def3.retrobbs.com>

 copy mid

https://news.novabbs.org/computers/article-flat.php?id=344&group=rocksolid.shared.security#344

 copy link   Newsgroups: rocksolid.shared.security
Path: rocksolid2!def3!.POSTED!not-for-mail
From: guest@retrobbs.rocksolidbbs.com (Guest)
Newsgroups: rocksolid.shared.security
Subject: Re: New chapter of Spectre
Date: Mon, 13 Aug 2018 22:22:45 -0400
Organization: Dancing elephants
Lines: 3
Message-ID: <pktdqs$qsl$1@def3.retrobbs.com>
References: <1842ba27a5e941bb93c7835c90755d54@def4.com>
Reply-To: Guest <guest@retrobbs.rocksolidbbs.com>
NNTP-Posting-Host: 10.0.2.2
Mime-Version: 1.0
Content-Type: text/plain; charset=utf-8; format=flowed
Content-Transfer-Encoding: 8bit
X-Trace: def3.retrobbs.com 1534212764 27541 10.0.2.2 (14 Aug 2018 02:12:44 GMT)
X-Complaints-To: usenet@def3.retrobbs.com
NNTP-Posting-Date: Tue, 14 Aug 2018 02:12:44 +0000 (UTC)
User-Agent: FUDforum 3.0.7
X-FUDforum: e4062714e2d275bd0cc7c3ee636428b0 <3262>
 by: Guest - Tue, 14 Aug 2018 02:22 UTC

I turn the Hyper Thread off most of the time and it mitigates most Specter attacks. Again if you use a server or a
good router you have some mitigation too.
Posted on: def3.i2p

Re: New chapter of Spectre

<5203722d7ecac3e09ecdee0223a97cb1@def4.com>

 copy mid

https://news.novabbs.org/computers/article-flat.php?id=348&group=rocksolid.shared.security#348

 copy link   Newsgroups: rocksolid.shared.security
Path: rocksolid2!def3!.POSTED.localhost!not-for-mail
From: anon@anon.com (anon)
Newsgroups: rocksolid.shared.security
Message-ID: <5203722d7ecac3e09ecdee0223a97cb1@def4.com>
Subject: Re: New chapter of Spectre
Date: Tue, 14 Aug 2018 19:17:20+0000
Organization: def4
In-Reply-To: <pktdqs$qsl$1@def3.retrobbs.com>
References: <pktdqs$qsl$1@def3.retrobbs.com>
Lines:
Mime-Version: 1.0
Content-Type: text/plain; charset=utf-8; format=flowed
Content-Transfer-Encoding: 8bit
 by: anon - Tue, 14 Aug 2018 19:17 UTC

>if you use a server

what do you mean by that ?

Posted on def4.i2p

Re: New chapter of Spectre

<pl0eg9$ko0$1@def3.retrobbs.com>

 copy mid

https://news.novabbs.org/computers/article-flat.php?id=349&group=rocksolid.shared.security#349

 copy link   Newsgroups: rocksolid.shared.security
Path: rocksolid2!def3!.POSTED!not-for-mail
From: guest@retrobbs.rocksolidbbs.com (Guest)
Newsgroups: rocksolid.shared.security
Subject: Re: New chapter of Spectre
Date: Wed, 15 Aug 2018 01:52:34 -0400
Organization: Dancing elephants
Lines: 4
Message-ID: <pl0eg9$ko0$1@def3.retrobbs.com>
References: <5203722d7ecac3e09ecdee0223a97cb1@def4.com>
Reply-To: Guest <guest@retrobbs.rocksolidbbs.com>
NNTP-Posting-Host: def2.lan
Mime-Version: 1.0
Content-Type: text/plain; charset=utf-8; format=flowed
Content-Transfer-Encoding: 8bit
X-Trace: def3.retrobbs.com 1534311753 21248 192.168.1.235 (15 Aug 2018 05:42:33 GMT)
X-Complaints-To: usenet@def3.retrobbs.com
NNTP-Posting-Date: Wed, 15 Aug 2018 05:42:33 +0000 (UTC)
User-Agent: FUDforum 3.0.7
X-FUDforum: e2245c1d60cd2fa7de3270a53d877d47 <3282>
 by: Guest - Wed, 15 Aug 2018 05:52 UTC

A BSD server is gold when connecting to the Internet. Some
expensive routers also are OK if you know what you are
doing.
Posted on: def2.i2p

Re: New chapter of Spectre

<pl0p7u$uj2$1@def3.retrobbs.com>

 copy mid

https://news.novabbs.org/computers/article-flat.php?id=350&group=rocksolid.shared.security#350

 copy link   Newsgroups: rocksolid.shared.security
Path: rocksolid2!def3!.POSTED!not-for-mail
From: trw@i2pmail.org (trw)
Newsgroups: rocksolid.shared.security
Subject: Re: New chapter of Spectre
Date: Wed, 15 Aug 2018 04:55:51 -0400
Organization: Dancing elephants
Lines: 3
Message-ID: <pl0p7u$uj2$1@def3.retrobbs.com>
References: <pl0eg9$ko0$1@def3.retrobbs.com>
Reply-To: trw <trw@i2pmail.org>
NNTP-Posting-Host: 10.0.2.2
Mime-Version: 1.0
Content-Type: text/plain; charset=utf-8; format=flowed
Content-Transfer-Encoding: 8bit
X-Trace: def3.retrobbs.com 1534322750 31330 10.0.2.2 (15 Aug 2018 08:45:50 GMT)
X-Complaints-To: usenet@def3.retrobbs.com
NNTP-Posting-Date: Wed, 15 Aug 2018 08:45:50 +0000 (UTC)
User-Agent: FUDforum 3.0.7
X-FUDforum: e4062714e2d275bd0cc7c3ee636428b0 <3288>
 by: trw - Wed, 15 Aug 2018 08:55 UTC

yeah, bsd has a very good reputation in terms of opsec, especially open bsd.
haven't taken the time though to work with it really, though.
Posted on: def3.i2p

Re: New chapter of Spectre

<d2771c41644bed0e4b71d7d06cf30297@def4.com>

 copy mid

https://news.novabbs.org/computers/article-flat.php?id=356&group=rocksolid.shared.security#356

 copy link   Newsgroups: rocksolid.shared.security
Path: rocksolid2!def3!.POSTED.localhost!not-for-mail
From: anon@anon.com (anon)
Newsgroups: rocksolid.shared.security
Message-ID: <d2771c41644bed0e4b71d7d06cf30297@def4.com>
Subject: Re: New chapter of Spectre
Date: Thu, 16 Aug 2018 12:55:34+0000
Organization: def4
In-Reply-To: <pktdqs$qsl$1@def3.retrobbs.com>
References: <pktdqs$qsl$1@def3.retrobbs.com>
Lines:
Mime-Version: 1.0
Content-Type: text/plain; charset=utf-8; format=flowed
Content-Transfer-Encoding: 8bit
 by: anon - Thu, 16 Aug 2018 12:55 UTC

and yet some more attacks based on the same scheme:

https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00161.html

https://foreshadowattack.eu/

you can now even hack one vm from another one. so break into one service on a cloud server, you can also get the rest.

Posted on def4.i2p

Re: New chapter of Spectre

<7e1f72272c2978643f37907dc2b865d7@def4.com>

 copy mid

https://news.novabbs.org/computers/article-flat.php?id=362&group=rocksolid.shared.security#362

 copy link   Newsgroups: rocksolid.shared.security
Path: rocksolid2!def3!.POSTED.localhost!not-for-mail
From: anon@anon.com (anon)
Newsgroups: rocksolid.shared.security
Message-ID: <7e1f72272c2978643f37907dc2b865d7@def4.com>
Subject: Re: New chapter of Spectre
Date: Sat, 18 Aug 2018 09:40:26+0000
Organization: def4
In-Reply-To: <d2771c41644bed0e4b71d7d06cf30297@def4.com>
References: <d2771c41644bed0e4b71d7d06cf30297@def4.com>
Lines:
Mime-Version: 1.0
Content-Type: text/plain; charset=utf-8; format=flowed
Content-Transfer-Encoding: 8bit
 by: anon - Sat, 18 Aug 2018 09:40 UTC

some more infos from intel:
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00161.html
https://software.intel.com/security-software-guidance/software-guidance/l1-terminal-fault

Posted on def4.i2p

1
server_pubkey.txt

rocksolid light 0.9.7
clearnet tor