TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

CacheWarp: A new software fault attack on AMD SEV-ES and SEV-SNP

96 pointsby g0xA52A2Aover 1 year ago

5 comments

netcoyoteover 1 year ago
&gt; Specifically, a malicious hypervisor can selectively drop any writes of an AMD SEV-ES and SEV-SNP guest that occurred at an attacker-chosen point<p>This strikes me as the thing that Raymond Chen calls &quot;being on the other side of this airtight hatchway&quot; [0]. That is, if you&#x27;ve already got control of the Hypervisor then ... you can do anything you want to the guest operating systems. Right?<p>0: <a href="https:&#x2F;&#x2F;devblogs.microsoft.com&#x2F;oldnewthing&#x2F;20060508-22&#x2F;?p=31283" rel="nofollow noreferrer">https:&#x2F;&#x2F;devblogs.microsoft.com&#x2F;oldnewthing&#x2F;20060508-22&#x2F;?p=31...</a>
评论 #38270625 未加载
评论 #38270340 未加载
binkHNover 1 year ago
Whenever I see something like this I&#x27;m always reminded about Theo de Raadt&#x27;s, of OpenBSD fame, opinion on the topic:<p><a href="https:&#x2F;&#x2F;marc.info&#x2F;?l=openbsd-misc&amp;m=119318909016582" rel="nofollow noreferrer">https:&#x2F;&#x2F;marc.info&#x2F;?l=openbsd-misc&amp;m=119318909016582</a>
评论 #38271957 未加载
评论 #38272404 未加载
I_Am_Nousover 1 year ago
These things seem to go in pairs, as there is currently a new Intel CVE on the frontpage too. Someone in the Intel thread mentioned that the underlying issue may be x86 having more and more stuff piled on top of it. That&#x27;s been great for compatibility, but I&#x27;m wondering if it might be worth Intel&#x2F;AMD making an x86 lite that strips everything but the necessary instructions.
评论 #38269997 未加载
评论 #38270270 未加载
评论 #38270706 未加载
评论 #38272613 未加载
userbinatorover 1 year ago
<i>In other words, this means that computations in the cloud can be performed on confidential data even if the cloud provider is untrusted or compromised.</i><p>Cloud is always &quot;someone else&#x27;s computer&quot;, regardless what stupid DRM-ish crap they come up with to try to pretend that it&#x27;s not. This tech only benefits the rent-seekers who try to distort the concept of ownership.<p>In other words, this is nothing worth worrying about.
评论 #38274328 未加载
crestover 1 year ago
Oh no the snake oil is leaking.
评论 #38270713 未加载