MIT CSAIL researchers show how malicious actors can exploit a split-second gap in chip defenses, using the Interrupt Injection technique to steal a Linux system’s password file.

MIT CSAIL researchers show how malicious actors can exploit a split-second gap in chip defenses, using the Interrupt Injection technique to steal a Linux system’s password file.

Ricercatori del MIT CSAIL hanno scoperto TONTOU, una tecnica di attacco che sfrutta una finestra temporale inevitabile nelle difese contro Spectre. Manipolando gli interrupt di…