Ryzen 與 EPYC 晶片 被發現有安全缺陷 - 3C

By Ida
at 2018-03-14T09:26
at 2018-03-14T09:26
Table of Contents
四類漏洞的使用前提
masterkey:
網頁提供的白皮書第9頁
https://i.imgur.com/mInI29z.png
ryzenfall:
網頁提供的白皮書第12頁
https://i.imgur.com/HxNMair.png
fallout:
網頁提供的白皮書第14頁
https://i.imgur.com/f6DfKtZ.png
chimera:
網頁提供的白皮書第18頁
https://i.imgur.com/M36VKio.png
理論上搭配別的漏洞是滿可怕的啦
但是這樣這些漏洞就需要combo技搭配
那上次那兩個漏洞呢?
這裡有個meltdown的學術報告
https://arxiv.org/abs/1801.01207
我截個重點給大家看好了
https://i.imgur.com/yddilkg.png
"The attack is independent of the operating system, and it does not rely on
any software vulnerabilities."
大guy4john,大家該幹嘛幹嘛去吧
※ 引述《b155073 ()》之銘言:
: 來源:https://amdflaws.com/
: 根據網站漏洞分為
: RYZENFALL
: FALLOUT
: CHIMERA
: MASTERKEY
: 主要有缺陷的部分有AMD Secure Processor
: 還有祥碩所設計的AMD Ryzen Chipset
: 其中文中特別標明
: AMD’s outsource partner, ASMedia, is a subsidiary of ASUSTeK Computer, a
: company with poor security track record that has been penalized by the
: Federal Trade Commission for neglecting security vulnerabilities, and must
: now undergo independent security audits for the next 20 years.
: 白皮書有提到
: The Ryzen chipset, a core system component that AMD outsourced to a Taiwanese
: chip
: manufacturer, ASMedia, is currently being shipped with exploitable
: manufacturer backdoors inside.
: These backdoors could allow attackers to inject malicious code into the chip.
: 祥碩惡名昭彰阿... 藏了後門在晶片組內
: 在zen+即將上場時被揭露漏洞
: 希望新的晶片組x470 b450會修復
--
masterkey:
網頁提供的白皮書第9頁
https://i.imgur.com/mInI29z.png
ryzenfall:
網頁提供的白皮書第12頁
https://i.imgur.com/HxNMair.png
fallout:
網頁提供的白皮書第14頁
https://i.imgur.com/f6DfKtZ.png
chimera:
網頁提供的白皮書第18頁
https://i.imgur.com/M36VKio.png
理論上搭配別的漏洞是滿可怕的啦
但是這樣這些漏洞就需要combo技搭配
那上次那兩個漏洞呢?
這裡有個meltdown的學術報告
https://arxiv.org/abs/1801.01207
我截個重點給大家看好了
https://i.imgur.com/yddilkg.png
"The attack is independent of the operating system, and it does not rely on
any software vulnerabilities."
大guy4john,大家該幹嘛幹嘛去吧
※ 引述《b155073 ()》之銘言:
: 來源:https://amdflaws.com/
: 根據網站漏洞分為
: RYZENFALL
: FALLOUT
: CHIMERA
: MASTERKEY
: 主要有缺陷的部分有AMD Secure Processor
: 還有祥碩所設計的AMD Ryzen Chipset
: 其中文中特別標明
: AMD’s outsource partner, ASMedia, is a subsidiary of ASUSTeK Computer, a
: company with poor security track record that has been penalized by the
: Federal Trade Commission for neglecting security vulnerabilities, and must
: now undergo independent security audits for the next 20 years.
: 白皮書有提到
: The Ryzen chipset, a core system component that AMD outsourced to a Taiwanese
: chip
: manufacturer, ASMedia, is currently being shipped with exploitable
: manufacturer backdoors inside.
: These backdoors could allow attackers to inject malicious code into the chip.
: 祥碩惡名昭彰阿... 藏了後門在晶片組內
: 在zen+即將上場時被揭露漏洞
: 希望新的晶片組x470 b450會修復
--
Tags:
3C
All Comments

By Steve
at 2018-03-15T14:14
at 2018-03-15T14:14

By Liam
at 2018-03-18T21:41
at 2018-03-18T21:41

By Carolina Franco
at 2018-03-21T20:08
at 2018-03-21T20:08

By Jessica
at 2018-03-23T22:21
at 2018-03-23T22:21

By Michael
at 2018-03-24T12:56
at 2018-03-24T12:56

By Candice
at 2018-03-28T19:55
at 2018-03-28T19:55

By Hamiltion
at 2018-03-31T07:24
at 2018-03-31T07:24

By Jessica
at 2018-04-02T14:24
at 2018-04-02T14:24
必須先取得 root 權限

By Lauren
at 2018-04-07T02:17
at 2018-04-07T02:17

By Damian
at 2018-04-11T08:06
at 2018-04-11T08:06

By Margaret
at 2018-04-13T11:09
at 2018-04-13T11:09

By John
at 2018-04-14T14:34
at 2018-04-14T14:34
就能領出錢.......好危險!

By Xanthe
at 2018-04-18T01:03
at 2018-04-18T01:03

By Isabella
at 2018-04-21T08:33
at 2018-04-21T08:33

By Enid
at 2018-04-23T10:31
at 2018-04-23T10:31
.

By Oliver
at 2018-04-26T08:50
at 2018-04-26T08:50

By Ethan
at 2018-04-26T21:16
at 2018-04-26T21:16

By Iris
at 2018-04-28T22:57
at 2018-04-28T22:57

By Necoo
at 2018-05-02T17:23
at 2018-05-02T17:23

By Hazel
at 2018-05-07T10:48
at 2018-05-07T10:48

By Leila
at 2018-05-07T14:06
at 2018-05-07T14:06

By Rachel
at 2018-05-11T07:06
at 2018-05-11T07:06
機就能拿到提款機鑰匙惹,不可原諒!!

By Regina
at 2018-05-16T00:06
at 2018-05-16T00:06

By Irma
at 2018-05-17T05:42
at 2018-05-17T05:42

By Oscar
at 2018-05-21T03:15
at 2018-05-21T03:15

By John
at 2018-05-25T00:59
at 2018-05-25T00:59

By Regina
at 2018-05-29T13:05
at 2018-05-29T13:05

By Bennie
at 2018-05-30T16:25
at 2018-05-30T16:25

By Harry
at 2018-05-31T01:46
at 2018-05-31T01:46

By Hedwig
at 2018-06-03T20:13
at 2018-06-03T20:13

By Noah
at 2018-06-06T04:44
at 2018-06-06T04:44

By Puput
at 2018-06-11T03:22
at 2018-06-11T03:22

By Joseph
at 2018-06-13T09:43
at 2018-06-13T09:43

By Queena
at 2018-06-16T13:25
at 2018-06-16T13:25

By Joseph
at 2018-06-17T09:30
at 2018-06-17T09:30

By Charlie
at 2018-06-19T10:29
at 2018-06-19T10:29
都解不開阿

By Yuri
at 2018-06-20T19:46
at 2018-06-20T19:46

By Doris
at 2018-06-21T07:08
at 2018-06-21T07:08
Related Posts
超微晶片存漏洞 駭客可控制電腦

By Olivia
at 2018-03-14T08:41
at 2018-03-14T08:41
CEO又換人... 格芯怎麼了?

By John
at 2018-03-14T08:32
at 2018-03-14T08:32
40K 學生用 3D繪圖機 求健檢

By Tom
at 2018-03-14T01:47
at 2018-03-14T01:47
商用電腦請益

By Sierra Rose
at 2018-03-14T01:32
at 2018-03-14T01:32
GALAX GTX1060 6GB $9290

By Andy
at 2018-03-14T01:20
at 2018-03-14T01:20