meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Friday, November 22nd 2019

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News

4.9754 Ratings

🗓️ 22 November 2019

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. Memory Encryption Issues; Memory Encryption Issues; RIPlace; OFfcie Preview Issue

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Friday, November 22nd, 2019 edition of the Santernut Storm Center's Stormcast.

0:08.0

My name is Johannes Ulrich, and I'm quoting from Riyadh, Saudi Arabia.

0:13.9

Looks like still about once a month or so, we learn about a new site channel attack that allows processes to read each other's memory.

0:25.5

Well, this of course is a particular problem for virtual machines where you have various virtual machines sharing the same hardware.

0:35.5

And of course, you are relying on the hardware somewhat to keep

0:39.3

these virtual machines separate from each other. One attempted solution to this problem is

0:45.9

the use of encrypted memory and both Intel as well as AMD have come up with solutions to

0:53.8

encrypt memory.

0:55.0

Now in part these solutions of course still aren't perfect and susceptible to some of

1:02.0

the same vulnerabilities that can be used to read out other processes memories.

1:09.0

A recent paper takes a closer look at AMD's implementation of this particular memory encryption

1:16.6

in its naplice generation of epic chips.

1:22.1

Now, for AMD, a critical component is the chip endorsement key or C.E.K.

1:29.3

The confidentiality of this chip is critical in order to maintain the security of encrypted memory.

1:38.3

Researchers from the Technical University Berlin took a closer look at AMD's implementation and found a method to

1:46.1

actually read this key using malicious firmware. What kind of makes this verse is that there's

1:54.4

also no protection to actually load old firmware in the chip so you can always downcrate it and as a result there

2:03.9

isn't really any great protection for this particular attack according to these

2:09.9

researchers any protection would require hardware fixes and could not be

2:15.6

implemented in software alone.

2:18.3

And if you downloaded the Monero command line wallet from the Get Monero website on Monday,

2:27.3

you should double check your binaries because you may have downloaded a compromised version.

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.