Specter -based CPU vulnerability allows guests to steal cloud confidential data




  • ETH Zurich researchers found a new Specter-BTI attack called VMSCAPE that allows a VM to steal host data
  • It affects cloud configurations using Kvm/Qemu in AMD E CPU of Intel, without going through existing defenses
  • The predictor of the branch in Vmexit proposes rinse as a low cost solution

If the Ghostbusters taught us something, is that the spectra are notoriously difficult to get rid of.

Security researchers at the Switzerland public university, Eth Zurich, recently discovered a new Specter-BTI attack (branch objective injection) that allows a malicious virtual machine (VM) to filter confidential data of the host system, without modifying the host software.

Leave a Comment

Your email address will not be published. Required fields are marked *