3 ms·
Researchers Discover Rootkit Exploit in Intel Processors That Dates Back to 1997
- hew 11y agoThe actual white paper: https://www.blackhat.com/docs/us-15/materials/us-15-Domas-The-Memory-Sinkhole-Unleashing-An-x86-Design-Flaw-Allowing-Universal-Privilege-Escalation-wp.pdf https://www.blackhat.com/docs/us-15/materials/us-15-Domas-Th...
- im3w1l 11y agoDiscussed 2 days ago: https://news.ycombinator.com/item?id=10020134 https://news.ycombinator.com/item?id=10020134
- jwildeboer 11y agoNo, they don't. In order to "exploit" this "bug" you need to be in ring 0. And if you are in ring 0 you own everything anyway. This is clickbait.
- aurelianito 11y agoIt probably can be used to escape virtual machines going from root to ring -2, escaping the hypervisor. It can also modify uefi, making it far more difficult to remove the malware.
- brians 11y agoThat's the idea that probably contributed to this problem: the model says that ring 0 is all powerful. But in a richer model, we might change who has ring 0—we might sell a machine, or get it infected and then want it clean. Root kits that can persist even when a later ring 0 wants them gone? That's surprising. So we learn to enrich our model to say something about time and causality, maybe.
- orf 11y agoWhy did you feel the need to put exploit and bug in quotes? No, ring 0 doesn't own everything, and I suggest reading the paper[1] or the presentation[2] before armchair judging. 1. https://www.blackhat.com/docs/us-15/materials/us-15-Domas-The-Memory-Sinkhole-Unleashing-An-x86-Design-Flaw-Allowing-Universal-Privilege-Escalation-wp.pdf https://www.blackhat.com/docs/us-15/materials/us-15-Domas-Th... 2. https://github.com/xoreaxeaxeax/sinkhole/raw/master/us-15-Domas-TheMemorySinkhole.pdf https://github.com/xoreaxeaxeax/sinkhole/raw/master/us-15-Do...