Researchers Claim to Find New Solution to Spectre, Meltdown
The researchers call their solution Dynamically Allocated Way Guard (DAWG) and revealed it in a recent paper. This name stands in opposition to Intel's Cache Allocation Technology (CAT) and is said to prevent attackers from accessing ostensibly secure information through exploiting flaws in the speculative execution process. Best of all, DAWG is said to require very few resources that CAT isn't already using and can be enabled with operating system changes instead of requiring the in-silicon fixes many thought were needed to address the flaws.
[...] Here's how the researchers summarized their approach with DAWG:
"Unlike existing mechanisms such as CAT, DAWG disallows hits across protection domains. This affects hit paths and cache coherence, and DAWG handles these issues with minimal modification to modern operating systems, while reducing the attack surface of operating systems to a small set of annotated sections where data moves across protection domains, or where domains are resized/reallocated. Only in these handful of routines, DAWG protection is relaxed, and other defensive mechanisms such as speculation fences are applied as needed."
Also at TechCrunch and Engadget.
(Score: 3, Funny) by Anonymous Coward on Saturday October 20 2018, @12:23AM (2 children)
"What speculative execution attack?" asked University of Riyadh professor Mohammed bin Mohamad. "The data entered the pipeline and then left out the back door. There was no execution."
(Score: 0) by Anonymous Coward on Saturday October 20 2018, @02:12AM
What are these chopped off fingers, then?
What? You want a toe, instead? You want a toe? I can get you a toe. I can get you one by 3 in the afternoon.
(Score: 1, Troll) by Bot on Saturday October 20 2018, @10:09AM
yo dawg i herd you like jokes so i put a dawg in together with a cat so you can speculate while saudis execute.
JK saudis did nothing wrong, apart selling oil.
Account abandoned.