Menu
Bayou Technologies | Lake Charles, Louisiana | Technology | Cybersecurity | Communication | Marketing
Computer IT Services & Marketing
  • Technology
    • Managed Services
    • Computer Repair
    • Consulting
  • Cybersecurity
    • BDR
    • Network Security
    • Computer Security
    • Data Recovery
  • Communication
    • Cabling
    • Wireless Networking
    • Phones
  • Marketing
    • Website Development
    • Search Engine Optimization
    • Social Media & Online Presence
    • Location Scan
    • Website & Email Management
    • Online Advertising
    • Multimedia Design
    • Newsletter
  • CALL: 337-214-1172

HOME  |  BLOG  |  REMOTE SUPPORT

Home
Support
Blog
Contact
Close Menu
Page Caches May Be Vulnerable To Attack
January 18 2019

Page Caches May Be Vulnerable To Attack

wukovits Apple, Blog, Microsoft, Recent News, Security, Technology News

There’s a new side channel attack to worry about. This one is after the target system’s OS page cache, where a variety of sensitive data that has been accessed by the device’s owner is stored for rapid retrieval.  Perhaps the worst and most ominous aspect of this newly identified threat is the fact that it’s not limited by hardware architecture, and has been found to work on both Window and Linux-based machines.

This allows attackers to bypass sandboxes and other security protocols.

The research team is a motley collection of IT professionals hailing from Graz University of Technology, Boston University, NetApp, Intel, and CrowdStrike. They identified a number of possible ways a hacker might be able to use the newly identified attack vector and were even able (under certain conditions) to send data gleaned from the target system to a remote server.

The team pointed out that although they ran their tests on Windows and Linux machines, there’s no reason to think their methodology wouldn’t be successful on any other operating system currently in use today.  This is a threat that potentially impacts the entire computing ecosystem. While many of the team’s experiments required that the would-be hacker have physical access to the device, they were able to demonstrate that under certain conditions, a remote attack was also possible.

On this front, the team had the following to say:

“Our remote attack leverages timing differences between memory and disk access, measured on a remote system, as a proxy for the required local information.”

They went on to explain that this could be achieved by measuring soft page faults, which happen any time a page is erroneously mapped.  In this manner, the team was able to send data between the target system and a remote web server.

It should be noted that this attack has not been seen in the wild, but Microsoft, for one, is wasting no time addressing it.  There’s’ already a mitigation routine built into Windows Insider build 18305, and it’s expected to be rolled out to the user base at large in the months ahead.

All that to say, it’s dangerous, but not as devastating as it otherwise could be.  Even so, it’s something to keep on your radar.

Used with permission from Article Aggregator

High Quality Photos May Affect Facial Recognition On Some Phones Passport And Credit Card Numbers Stolen In Marriott Hack

Related Posts

Gen Intel Processors May Get Built In Ransomware Protection

Blog, General Interest, New Technology, Ransomware, Recent News, Security, Technology News

Gen Intel Processors May Get Built In Ransomware Protection

Firefox To Follow Chrome in Backspace Keyboard Functionality Change

Blog, Chrome, Mozilla Firefox, Recent News, Technology News

Firefox To Follow Chrome in Backspace Keyboard Functionality Change

Even Big Companies Like Nissan Get Hacked

Blog, Branding, Data Breach, General Interest, Recent News, Security, Technology News

Even Big Companies Like Nissan Get Hacked

Recent Posts

  • Gen Intel Processors May Get Built In Ransomware Protection
  • Firefox To Follow Chrome in Backspace Keyboard Functionality Change
  • Even Big Companies Like Nissan Get Hacked

Archives

Categories

Get a Domain Registered


$.99* .COM Domain! Get going with GoDaddy!

Back To Top
Bayou Technologies | Lake Charles, Louisiana | Technology | Cybersecurity | Communication | Marketing
  • Home
  • Technology
  • Cybersecurity
  • Communication
  • Marketing
  • Newsletter
  • Blog
  • Support
  • Contact

BBB Logo

Bayou Technologies, LLC
✖
Bayou Technologies is a BBB Accredited Busines
A+
On a scale of A+ to F

Reviewed, Evaluated and Accredited

Meets All 26 Standards of Accreditation

BBB Accredited since 1/1/2012

Click here for BBB Business Report on Bayou Technologies, LLC

BBB Accredited:

BBB Rating as of:

Verify Bayou Technologies, LLC
Bayou Technologies, LLC © 2019
Website Development and Marketing in Lake Charles, Louisiana
This website uses cookies to improve your experience. We'll assume you're ok with this, but you can opt-out if you wish. Cookie settingsACCEPT
Privacy & Cookies Policy

Privacy Overview

This website uses cookies to improve your experience while you navigate through the website. Out of these cookies, the cookies that are categorized as necessary are stored on your browser as they are as essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may have an effect on your browsing experience.
Necessary
Always Enabled

Necessary cookies are absolutely essential for the website to function properly. This category only includes cookies that ensures basic functionalities and security features of the website. These cookies do not store any personal information.

Non-necessary

Any cookies that may not be particularly necessary for the website to function and is used specifically to collect user personal data via analytics, ads, other embedded contents are termed as non-necessary cookies. It is mandatory to procure user consent prior to running these cookies on your website.