Activities per year
Abstract
All Spectre attacks so far required local code execution. We present the first fully remote Spectre attack. For this purpose, we demonstrate the first access-driven remote Evict+Reload cache attack over the network, leaking 15 bits per hour. We present a novel high-performance AVX-based covert channel that we use in our cache-free Spectre attack.
We show that in particular remote Spectre attacks perform significantly better with the AVX-based covert channel, leaking 60 bits per hour from the target system. We demonstrate practical NetSpectre attacks on the Google cloud, remotely leaking data and remotely breaking ASLR.
We show that in particular remote Spectre attacks perform significantly better with the AVX-based covert channel, leaking 60 bits per hour from the target system. We demonstrate practical NetSpectre attacks on the Google cloud, remotely leaking data and remotely breaking ASLR.
Original language | English |
---|---|
Title of host publication | Computer Security - ESORICS 2019 |
Subtitle of host publication | 24th European Symposium on Research in Computer Security, Luxembourg, September 23–27, 2019, Proceedings |
Place of Publication | Cham |
Publisher | Springer |
Pages | 279-299 |
Volume | 1 |
ISBN (Electronic) | 978-3-030-29959-0 |
ISBN (Print) | 978-3-030-29958-3 |
DOIs | |
Publication status | Published - Sept 2019 |
Event | ESORICS 2019: 24th European Symposium on Research in Computer Security - Luxembourg, Luxembourg Duration: 23 Sept 2019 → 27 Sept 2019 |
Publication series
Name | Lecture Notes in Computer Science |
---|---|
Volume | 11735 |
Conference
Conference | ESORICS 2019 |
---|---|
Country/Territory | Luxembourg |
City | Luxembourg |
Period | 23/09/19 → 27/09/19 |
Fingerprint
Dive into the research topics of 'NetSpectre: Read Arbitrary Memory over Network'. Together they form a unique fingerprint.Activities
- 1 Talk at conference or symposium
-
NetSpectre: Read Arbitrary Memory over Network
Michael Schwarz (Speaker)
23 Sep 2019Activity: Talk or presentation › Talk at conference or symposium › Science to science