The RIDL and Fallout speculative execution attacks allow attackers to leak confidential data across arbitrary security boundaries on a victim system, for instance compromising data held in the cloud or leaking your information to malicious websites.
[...] RIDL (Rogue In-Flight Data Load) shows attackers can exploit MDS (Microarchitectural Data Sampling) vulnerabilities to mount practical attacks and leak sensitive data in real-world settings.
[....] Fallout demonstrates that attackers can leak data from Store Buffers, which are used every time a CPU pipeline needs to store any data. Making things worse, an unprivileged attacker can then later pick which data they leak from the CPU's Store Buffer.
(Score: 0) by Anonymous Coward on Wednesday May 15 2019, @05:46PM
Of advanced exploit R&D. While I probably sound like a conspiracy theorist, this is what happens when you collude with a country like Israel in the ways America has and let a single technology company become an effective monopoly on a major facet of the marketplace. Given how long America has been shorting its future with its chinese trade practices and other offshoring activities, is it really a surprise though?