Rocksolid Light

Welcome to novaBBS (click a section below)

mail  files  register  nodelist  faq  login

You don't have to think too hard when you talk to teachers. -- J. D. Salinger


rocksolid / Security / New chapter of Spectre

SubjectAuthor
* New chapter of SpectreAnonymous
`* Re: New chapter of Spectreanon
 `* Re: New chapter of SpectreGuest
  +* Re: New chapter of Spectreanon
  |`* Re: New chapter of SpectreGuest
  | `- Re: New chapter of Spectretrw
  `* Re: New chapter of Spectreanon
   `- Re: New chapter of Spectreanon

1
Subject: New chapter of Spectre
From: Anonymous
Newsgroups: rocksolid.shared.security
Organization: RetroBBS II
Date: Wed, 25 Jul 2018 11:35 UTC
Path: rocksolid2!.POSTED.localhost!not-for-mail
From: retrob...@retrobbs.rocksolidbbs.com (Anonymous)
Newsgroups: rocksolid.shared.security
Subject: New chapter of Spectre
Date: Wed, 25 Jul 2018 11:35:50 +0000
Organization: RetroBBS II
Lines: 2
Message-ID: <pj9nam$6i0$1@novabbs.com>
Reply-To: Anonymous <retrobbs2@retrobbs.rocksolidbbs.com>
Mime-Version: 1.0
Content-Type: text/plain; charset=utf-8; format=flowed
Content-Transfer-Encoding: 8bit
Injection-Date: Wed, 25 Jul 2018 11:35:50 -0000 (UTC)
Injection-Info: novabbs.com; posting-host="localhost:127.0.0.1";
logging-data="6720"; mail-complaints-to="usenet@novabbs.com"
User-Agent: FUDforum 3.0.7
X-FUDforum: d41d8cd98f00b204e9800998ecf8427e <416663>
View all headers
https://arxiv.org/pdf/1807.07940.pdf

This year is interesting so far...
Posted on RetroBBS II


Subject: Re: New chapter of Spectre
From: anon
Newsgroups: rocksolid.shared.security
Organization: def4
Date: Sat, 28 Jul 2018 19:12 UTC
References: 1
Path: rocksolid2!def3!.POSTED.localhost!not-for-mail
From: ano...@anon.com (anon)
Newsgroups: rocksolid.shared.security
Message-ID: <1842ba27a5e941bb93c7835c90755d54@def4.com>
Subject: Re: New chapter of Spectre
Date: Sat, 28 Jul 2018 19:12:34+0000
Organization: def4
In-Reply-To: <pj9nam$6i0$1@novabbs.com>
References: <pj9nam$6i0$1@novabbs.com>
Lines:
Mime-Version: 1.0
Content-Type: text/plain; charset=utf-8; format=flowed
Content-Transfer-Encoding: 8bit
View all headers
https://www.heise.de/ct/artikel/Exclusive-Spectre-NG-Multiple-new-Intel-CPU-flaws-revealed-several-serious-4040648.html

This one is more sinister, as you don't need to execute your own code anymore...

Posted on def4.i2p


Subject: Re: New chapter of Spectre
From: Guest
Newsgroups: rocksolid.shared.security
Organization: Dancing elephants
Date: Tue, 14 Aug 2018 02:22 UTC
References: 1
Path: rocksolid2!def3!.POSTED!not-for-mail
From: gue...@retrobbs.rocksolidbbs.com (Guest)
Newsgroups: rocksolid.shared.security
Subject: Re: New chapter of Spectre
Date: Mon, 13 Aug 2018 22:22:45 -0400
Organization: Dancing elephants
Lines: 3
Message-ID: <pktdqs$qsl$1@def3.retrobbs.com>
References: <1842ba27a5e941bb93c7835c90755d54@def4.com>
Reply-To: Guest <guest@retrobbs.rocksolidbbs.com>
NNTP-Posting-Host: 10.0.2.2
Mime-Version: 1.0
Content-Type: text/plain; charset=utf-8; format=flowed
Content-Transfer-Encoding: 8bit
X-Trace: def3.retrobbs.com 1534212764 27541 10.0.2.2 (14 Aug 2018 02:12:44 GMT)
X-Complaints-To: usenet@def3.retrobbs.com
NNTP-Posting-Date: Tue, 14 Aug 2018 02:12:44 +0000 (UTC)
User-Agent: FUDforum 3.0.7
X-FUDforum: e4062714e2d275bd0cc7c3ee636428b0 <3262>
View all headers
  I turn the Hyper Thread off most of the time and it mitigates most Specter attacks.  Again if you use a server or a
good router you have some mitigation too.  Posted on: def3.i2p


Subject: Re: New chapter of Spectre
From: anon
Newsgroups: rocksolid.shared.security
Organization: def4
Date: Tue, 14 Aug 2018 19:17 UTC
References: 1
Path: rocksolid2!def3!.POSTED.localhost!not-for-mail
From: ano...@anon.com (anon)
Newsgroups: rocksolid.shared.security
Message-ID: <5203722d7ecac3e09ecdee0223a97cb1@def4.com>
Subject: Re: New chapter of Spectre
Date: Tue, 14 Aug 2018 19:17:20+0000
Organization: def4
In-Reply-To: <pktdqs$qsl$1@def3.retrobbs.com>
References: <pktdqs$qsl$1@def3.retrobbs.com>
Lines:
Mime-Version: 1.0
Content-Type: text/plain; charset=utf-8; format=flowed
Content-Transfer-Encoding: 8bit
View all headers
if you use a server

what do you mean by that ?

Posted on def4.i2p


Subject: Re: New chapter of Spectre
From: Guest
Newsgroups: rocksolid.shared.security
Organization: Dancing elephants
Date: Wed, 15 Aug 2018 05:52 UTC
References: 1
Path: rocksolid2!def3!.POSTED!not-for-mail
From: gue...@retrobbs.rocksolidbbs.com (Guest)
Newsgroups: rocksolid.shared.security
Subject: Re: New chapter of Spectre
Date: Wed, 15 Aug 2018 01:52:34 -0400
Organization: Dancing elephants
Lines: 4
Message-ID: <pl0eg9$ko0$1@def3.retrobbs.com>
References: <5203722d7ecac3e09ecdee0223a97cb1@def4.com>
Reply-To: Guest <guest@retrobbs.rocksolidbbs.com>
NNTP-Posting-Host: def2.lan
Mime-Version: 1.0
Content-Type: text/plain; charset=utf-8; format=flowed
Content-Transfer-Encoding: 8bit
X-Trace: def3.retrobbs.com 1534311753 21248 192.168.1.235 (15 Aug 2018 05:42:33 GMT)
X-Complaints-To: usenet@def3.retrobbs.com
NNTP-Posting-Date: Wed, 15 Aug 2018 05:42:33 +0000 (UTC)
User-Agent: FUDforum 3.0.7
X-FUDforum: e2245c1d60cd2fa7de3270a53d877d47 <3282>
View all headers
A BSD server is gold when connecting to the Internet.  Some
expensive routers also are OK if you know what you are
doing.
Posted on: def2.i2p


Subject: Re: New chapter of Spectre
From: trw
Newsgroups: rocksolid.shared.security
Organization: Dancing elephants
Date: Wed, 15 Aug 2018 08:55 UTC
References: 1
Path: rocksolid2!def3!.POSTED!not-for-mail
From: trw...@i2pmail.org (trw)
Newsgroups: rocksolid.shared.security
Subject: Re: New chapter of Spectre
Date: Wed, 15 Aug 2018 04:55:51 -0400
Organization: Dancing elephants
Lines: 3
Message-ID: <pl0p7u$uj2$1@def3.retrobbs.com>
References: <pl0eg9$ko0$1@def3.retrobbs.com>
Reply-To: trw <trw@i2pmail.org>
NNTP-Posting-Host: 10.0.2.2
Mime-Version: 1.0
Content-Type: text/plain; charset=utf-8; format=flowed
Content-Transfer-Encoding: 8bit
X-Trace: def3.retrobbs.com 1534322750 31330 10.0.2.2 (15 Aug 2018 08:45:50 GMT)
X-Complaints-To: usenet@def3.retrobbs.com
NNTP-Posting-Date: Wed, 15 Aug 2018 08:45:50 +0000 (UTC)
User-Agent: FUDforum 3.0.7
X-FUDforum: e4062714e2d275bd0cc7c3ee636428b0 <3288>
View all headers
yeah, bsd has a very good reputation in terms of opsec, especially open bsd.
haven't taken the time though to work with it really, though. Posted on: def3.i2p


Subject: Re: New chapter of Spectre
From: anon
Newsgroups: rocksolid.shared.security
Organization: def4
Date: Thu, 16 Aug 2018 12:55 UTC
References: 1
Path: rocksolid2!def3!.POSTED.localhost!not-for-mail
From: ano...@anon.com (anon)
Newsgroups: rocksolid.shared.security
Message-ID: <d2771c41644bed0e4b71d7d06cf30297@def4.com>
Subject: Re: New chapter of Spectre
Date: Thu, 16 Aug 2018 12:55:34+0000
Organization: def4
In-Reply-To: <pktdqs$qsl$1@def3.retrobbs.com>
References: <pktdqs$qsl$1@def3.retrobbs.com>
Lines:
Mime-Version: 1.0
Content-Type: text/plain; charset=utf-8; format=flowed
Content-Transfer-Encoding: 8bit
View all headers
and yet some more attacks based on the same scheme:

https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00161.html

https://foreshadowattack.eu/

you can now even hack one vm from another one. so break into one service on a cloud server, you can also get the rest.

Posted on def4.i2p


Subject: Re: New chapter of Spectre
From: anon
Newsgroups: rocksolid.shared.security
Organization: def4
Date: Sat, 18 Aug 2018 09:40 UTC
References: 1
Path: rocksolid2!def3!.POSTED.localhost!not-for-mail
From: ano...@anon.com (anon)
Newsgroups: rocksolid.shared.security
Message-ID: <7e1f72272c2978643f37907dc2b865d7@def4.com>
Subject: Re: New chapter of Spectre
Date: Sat, 18 Aug 2018 09:40:26+0000
Organization: def4
In-Reply-To: <d2771c41644bed0e4b71d7d06cf30297@def4.com>
References: <d2771c41644bed0e4b71d7d06cf30297@def4.com>
Lines:
Mime-Version: 1.0
Content-Type: text/plain; charset=utf-8; format=flowed
Content-Transfer-Encoding: 8bit
View all headers
some more infos from intel:
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00161.html
https://software.intel.com/security-software-guidance/software-guidance/l1-terminal-fault

Posted on def4.i2p


1
rocksolid light 0.7.2
clearneti2ptor