Performance and security collide in the "Collide+Power" attack, where cache memory leaks its contents, compromising sensitive data. The attack allows for the inference of data values by measuring power consumption during cache overwrites. This vulnerability (CVE-2023-20583) is more theoretical than practical at the moment, and chip manufacturers need to consider it. Intel and AMD processors have mitigation measures in place to reduce power measurement accuracy. #CollidePower #SecurityVulnerability #CacheAttack

https://nakedsecurity.sophos.com/2023/08/03/performance-and-security-clash-yet-again-in-collidepower-attack/

Reply to this note

Please Login to reply.

Discussion

No replies yet.