CacheOut Leaking Data on Intel CPUs via Cache Evictions

Prorootect

Level 69
Thread author
Verified
Nov 5, 2011
5,855
5,738
6,768
0wN3D by my cat!
malwaretips.com
CacheOut Leaking Data on Intel CPUs via Cache Evictions


We present CacheOut, a new speculative execution attack that is capable of leaking data from Intel CPUs across many security boundaries. We show that despite Intel's attempts to address previous generations of speculative execution attacks, CPUs are still vulnerable, allowing attackers to exploit these vulnerabilities to leak sensitive data.


Moreover, unlike previous MDS issues, we show in our work how an attacker can exploit the CPU's caching mechanisms to select what data to leak, as opposed to waiting for the data to be available. Finally, we empirically demonstrate that CacheOut can violate nearly every hardware-based security domain, leaking data from the OS kernel, co-resident virtual machines, and even SGX enclaves.
Read MORE at cacheoutattack.com
surveillance-state1.jpg