Thursday, January 4, 2018

Microprocessor bug Meltdown

VM and Microprocessor bug fixes incoming..
hopefully microcode quickly also.

Creating a better virtualization header that is:
More efficient at isolating the contained OS with attributes in the OS's to contain secured data?
We find answers to improve efficiency and protect against VM>VM data transfer or to use this for a creative purpose!

We need answers! and science. : Microcode update

"First responder RS"

"Thank you for googles firm responses to the bug, faith in google is high..
The micro code be updated to flush & or contain the the speculative data in a data-cycle secure storage,
Within the framework of cache and ram/virtual-ram?
cycle efficiency would be at most two cycles and a flush Xor bit data overlay,

Bit Masking before and after pre-fetch presents & also uses data - this method would be fast! (c)Rupert S"

"Obviously in light of buffer exploitation we would suggest that buffers after password entry are cleared, This is not the whole solution because the spy program could be resident..

Buffer exploitation is a common practice in viruses and this type of attack is nothing new..
There is no doubt that buffers are a victim of flooding and exploitation; Over and over!
After all buffer exploitation is a logical consequence of their use on a computer or hardware.

Randomizing buffer allocation, Location and encryption algorithm is the most logical choice on hardware, However! how much effort must be made to protect buffers when an attack on them is predicable and logical? A lot we say.

(c)Rupert S"

Google systems have been updated for Meltdown bug https://security.googleblog.com/2018/01/todays-cpu-vulnerability-what-you-need.html

attack mitigation - https://support.google.com/faqs/answer/7622138#android

"Microsoft issued an emergency update today,
Amazon said it protected AWS customers running Amazon's tailored Linux version and will roll out the MSFT patch,

for other customers to day"

We need answers! and science. : Microcode : update



https://science.n-helix.com/2020/06/cryptoseed.html

**

A detailed and interesting article with many details; Well written. (12 jan 2018)

https://www.scientificamerican.com/article/meltdown-and-spectre-expose-the-dark-side-of-superfast-computers/


Gaming performance:
https://www.techspot.com/article/1554-meltdown-flaw-cpu-performance-windows/

Gaming performance:
https://www.techspot.com/article/1554-meltdown-flaw-cpu-performance-windows/

report PDF on mitigation - (requires signing) : https://insidehpc.com/white-paper/meltdown-spectre-bugs-work-can-prevent-performance-plummet/


AMD's concern for security lead them to make cache work differently right from the start; Where as Intel chose to pre-fetch kernel & secure data on the presumption that this could rarely be used.(this was published in the past we read about it.) RS

https://semiaccurate.com/2017/06/22/amds-epyc-major-advance-security/

https://www.anandtech.com/show/11591/amd-launches-ryzen-pro-cpus-enhanced-security-longer-warranty-better-quality

As we can see AMD has a security focus & did also in 2005 when pre-fetch method came up for debate.

***

"Details of a problem have been gradually emerging, People with AMD Athlon-powered computers say that following the installation of the patch, it is impossible to boot into Windows leaving a full re-installation as the only option -- although some users report that even this does not fix the problem. "

(possibly related to the antivirus program incompatibility)(some AV's possibly! we need a list preferably now.)

https://betanews.com/2018/01/08/microsoft-meltdown-spectre-patch-bricks-amd-pcs/

Athlon PC patch is being re engineered so that it works on windows 10 - not related to newer AMD chips:

https://www.theverge.com/2018/1/9/16867068/microsoft-meltdown-spectre-security-updates-amd-pcs-issues

***
Intel information with sub-tabs (of interest)

https://www.intel.com/content/www/us/en/architecture-and-technology/facts-about-side-channel-analysis-and-intel-products.html

On the front of the kernel patch 4.4.0-108 (Ubuntu) bricking some older Athlon models apparently ...
4.4.0-109 is the fixed version; Further information would be useful but is currently too hush hush for full disclosure. - google 4.4.0-109 for more information.

***

on the GPU front we can see that since cache pre-fetch is the issue that all classes of GPU/CPU & other processor class with cache may well face issues.

https://insidehpc.com/2018/01/nvidia-races-patch-gpu-drivers-spectre-meltdown/

https://nvidia.custhelp.com/app/answers/detail/a_id/4611

Crypto Keys need replacing due to meltdown bug - after patching!
due to system compromise. (c)RS

Meltdown and specter security Firmware update is more important to bitcoin, Crypto coin / Crypto coin wallets & block-chain than the price! read it now and Update

Firmware Updates and Initial Performance Data for Data Center Systems - information on intel,AMD & other components

https://newsroom.intel.com/news/firmware-updates-and-initial-performance-data-for-data-center-systems/

HPC View of Meltdown and a few patch updates
AMD affirmative patch inbound to secure lesser risk in conscientious market. - good update

As of 23/01/2018 Intel patch to CPU has as yet failed to be fully effective against system instability caused by unexpected side effects : https://www.cnet.com/news/intel-stops-some-chip-patches-unexpected-reboot-meltdown-spectre/
Further improvements sought, One suggests a better cohesive response between Low Level OS companies like Redhat Linux, Microsoft, apple and android with Hardware developers - interactive people, RS

Power 7/8/9 update : https://www.securityweek.com/ibm-releases-spectre-meltdown-patches-power-systems

01/02/2018 - additional AMD patch - Windows 10 Build 16299.214 : http://www.tomshardware.com/news/microsoft-spectre-fix-amd-cpu-windows-update,36440.html
15/02/2018 - fixed patch http://support.microsoft.com/?kbid=4074588

https://t.co/MV2PFSfep7 - Top Applications speed test of patches on Stamped - Texas University - Linux

15/03/2018 https://techpinions.com/amd-security-concerns-overshadowed-by-circumstances/52478

Looks like the Israeli company is asking us to suspect firmware ....
Frankly no #hardware could avoid #firmware issues!,
If AMD/INTEL is really being asked to call fake firmware an AMD & INTEL/GPU Manufacturers security flaw.. when this is in the BIOS & not randomly downloaded!

28/04/2018 Microsoft update for windows (7 & who knows!) causing security flaw.https://www.theregister.co.uk/2018/03/28/microsoft_windows_meltdown_patch_security_flaw/ - in detail
http://blog.frizk.net/2018/03/total-meltdown.html?m=1 - original sc

http://www.tomshardware.com/news/windows-7-total-meltdown-patch,36765.html

https://www.zdnet.com/article/windows-10-on-amd-this-new-update-plus-microsofts-patch-block-spectre-attacks/

https://www.zdnet.com/article/google-our-brilliant-spectre-fix-dodges-performance-hit-so-you-should-all-use-it/

https://support.google.com/faqs/answer/7625886 - Retpoline: a software construct for preventing branch-target-injection

03/05/2018 - Apparently a new wave of specter variant bug's appear to be in the process of being patched - ARM & Intel as to others we know not at the moment!
250000$ reward on offer from Microsoft for flaw solution + security bug.

https://www.heise.de/ct/artikel/Exclusive-Spectre-NG-Multiple-new-Intel-CPU-flaws-revealed-several-serious-4040648.html

Windows 10 version 1803 is out now since the 30th April but you have to manually update though the update tool!
To get this super HDR version of windows with better hardware support, truly super !

https://blog.barkly.com/meltdown-spectre-patches-list-windows-update-help

https://blog.trendmicro.com/fixing-meltdown-spectre-vulnerabilities/

Enable Windows Bugfix bat - run admin

15/05/2019 - Zombie load bug : Intel : said to slow down processors especially with java

https://www.pcgamesn.com/intel/zombieload-mds-vulnerability-security-patch-hyperthreading-mitigation-performance

How do we avoid the performance loss? Believable solve

Essentially we have to make speculative load cache private to the operating system at a minimum, essentially we can still use masked data load above the system but we need to verify the task ID and PID and where possible tab/Window or process ID.

Essentially we need to trim the dataset to the process in a tree ML.

Processor : Privileged execution by kernel : By application list & Privilege level in regard to the recurved data.

Memory Containment is not just prefetch stack but also system, OS & Process.

Mitigation by security dam , Masking data & Antivirus software.

https://science.n-helix.com/2019/05/zombie-load.html


Update 14/05/2019 or later installed and all VM's need to be shutdown and restarted & updated according to Microsoft post.

(C)RS

(c)Rupert Summerskill

No comments: