PulseAugur
实时 21:59:47
English(EN) Researchers attack AMD's Infinity Fabric to bypass hardware security protections with 'Fabricked' — flaw lets malicious cloud hosts silently read confidential VM memory and forge attestation reports

Fabricked 漏洞绕过 AMD EPYC 安全,暴露虚拟机内存

研究人员发现了一个名为“Fabricked”的纯软件漏洞,该漏洞可以绕过 EPYC 处理器上 AMDSEV-SNP 机密计算保护。该漏洞利用了启动过程中的 Infinity Fabric 互连,允许恶意云主机获得对虚拟机内存的未经授权的读写访问。此漏洞还能够伪造证明报告,从而破坏租户对其云环境的信任。 AI

影响 破坏了依赖硬件级安全进行机密计算的云环境的信任。

排序理由 研究人员披露了一个影响 AMD 硬件安全保护的纯软件漏洞。

在 Tom's Hardware 阅读 →

AI 生成摘要 · Google Gemini · 来自 2 个来源。 我们如何撰写摘要 →

Fabricked 漏洞绕过 AMD EPYC 安全,暴露虚拟机内存

报道来源 [2]

  1. Tom's Hardware TIER_1 English(EN) · Etiido Uko ·

    Researchers attack AMD's Infinity Fabric to bypass hardware security protections with 'Fabricked' — flaw lets malicious cloud hosts silently read confidential VM memory and forge attestation reports

    ETH Zurich researchers disclosed “Fabricked,” a software-only attack that manipulates AMD Infinity Fabric routing during boot to undermine SEV-SNP protections on EPYC systems, enabling malicious cloud hosts to read confidential VM memory and forge attestation reports

  2. Mastodon — fosstodon.org TIER_1 English(EN) · [email protected] ·

    Researchers attack AMD's Infinity Fabric to bypass hardware security protections with 'Fabricked' — flaw … ETH Zurich researchers disclosed “Fabricked,” a softw

    Researchers attack AMD's Infinity Fabric to bypass hardware security protections with 'Fabricked' — flaw … ETH Zurich researchers disclosed “Fabricked,” a software-only attack that manipulates AMD Infinity Fabric routing during boot to undermine SEV-SNP protections on EPYC system…