{"id":965,"date":"2019-10-27T06:00:37","date_gmt":"2019-10-27T05:00:37","guid":{"rendered":"https:\/\/www.mosi.at\/ikt\/?p=965"},"modified":"2019-10-27T23:07:53","modified_gmt":"2019-10-27T22:07:53","slug":"spectre-ist-gekommen-um-zu-bleiben","status":"publish","type":"post","link":"https:\/\/www.mosi.at\/ikt\/2019\/10\/27\/spectre-ist-gekommen-um-zu-bleiben\/","title":{"rendered":"Spectre ist gekommen um zu bleiben"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">Eine Analyse der Seitenkan\u00e4le und der spekulativen Ausf\u00fchrung von  Ross Mcilroy,  Jaroslav Sevcik,  Tobias Tebbi,  Ben L. Titzer,  Toon Verwaest   <\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Computersysteme streben nach drei Schl\u00fcsselsicherheitseigenschaften:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Vertraulichkeit<\/li><li>Integrit\u00e4t<\/li><li>Verf\u00fcgbarkeit<\/li><\/ul>\n\n\n\n<p class=\"has-small-font-size wp-block-paragraph\"><a rel=\"noreferrer noopener\" href=\"https:\/\/www.amazon.com\/Basics-Information-Security-Understanding-Fundamentals-ebook\/dp\/B0054IAIYG#reader_B0054IAIYG\" target=\"_blank\">Jason Andress. The Basics of Information Security: Understanding the Fundamentals of InfoSec in Theory and Practice. Syngress Publishing, 2nd edition, 2014.<\/a><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Von diesen ist die Vertraulichkeit das Eigentum, das die Privatsph\u00e4re garantiert. Auf diese Informationen kann nur von autorisierten Parteien zugegriffen werden.<br>Die Vertraulichkeit ist die Basis f\u00fcr viele Sicherheitsmechanismen, einschlie\u00dflich Passw\u00f6rtern, Zugriffstoken, TANs, Cookies und Funktionen. K\u00f6nnen private Daten von unbefugten \u00fcber <strong>unvorhergesehene Informationskan\u00e4le<\/strong> zug\u00e4nglich werden, so nennt man diese L\u00fccke &#8222;Seitenkanall\u00fccke&#8220;.<\/p>\n\n\n\n<p class=\"has-small-font-size wp-block-paragraph\"><a rel=\"noreferrer noopener\" aria-label=\" (\u00f6ffnet in neuem Tab)\" href=\"https:\/\/arxiv.org\/pdf\/1902.05178.pdf\" target=\"_blank\">Spectre is here to stay<\/a><\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Windows Server Anleitung zum Schutz gegen speculative Execution und side-channel Verwundbarkeit. <a rel=\"noreferrer noopener\" aria-label=\" (\u00f6ffnet in neuem Tab)\" href=\"https:\/\/support.microsoft.com\/en-us\/help\/4073119\/protect-against-speculative-execution-side-channel-vulnerabilities-in\" target=\"_blank\">[1]<\/a><\/h2>\n\n\n\n<ul class=\"wp-block-list\"><li><a href=\"https:\/\/cve.mitre.org\/cgi-bin\/cvename.cgi?name=CVE-2017-5715\" target=\"_blank\" rel=\"noreferrer noopener\">CVE-2017-5715 \u2013 &#8222;Branch Target Injection&#8220;<\/a><\/li><li><a href=\"https:\/\/cve.mitre.org\/cgi-bin\/cvename.cgi?name=CVE-2017-5753\" target=\"_blank\" rel=\"noreferrer noopener\">CVE-2017-5753 \u2013 &#8222;Bounds Check Bypass&#8220;<\/a><\/li><li><a href=\"https:\/\/cve.mitre.org\/cgi-bin\/cvename.cgi?name=CVE-2017-5754\" target=\"_blank\" rel=\"noreferrer noopener\">CVE-2017-5754 \u2013 &#8222;Rogue Data Cache Load&#8220;<\/a><\/li><li><a href=\"https:\/\/cve.mitre.org\/cgi-bin\/cvename.cgi?name=CVE-2018-3639\" target=\"_blank\" rel=\"noreferrer noopener\">CVE-2018-3639 \u2013 &#8222;Speculative Store Bypass&#8220;<\/a><\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\"><a rel=\"noreferrer noopener\" aria-label=\" (\u00f6ffnet in neuem Tab)\" href=\"https:\/\/googleprojectzero.blogspot.com\/2018\/01\/reading-privileged-memory-with-side.html\" target=\"_blank\">Project Zero team von Google<\/a><\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Meltdown und Spectre: Microsoft ver\u00f6ffentlicht Pr\u00fcfwerkzeug f\u00fcr Prozessor-Sicherheitsl\u00fccken<\/h2>\n\n\n\n<pre class=\"wp-block-code\"><code>PS C:\\admin\\!PS1>Set-ExecutionPolicy RemoteSigned\nPS C:\\admin\\!PS1>Get-SpeculationControlSettings\nFor more information about the output below, please refer to https:\/\/support.microsoft.com\/help\/4074629\n\nSpeculation control settings for CVE-2017-5715 [branch target injection]\nAMD CPU detected: mitigations for branch target injection on AMD CPUs have additional registry settings for this mitigation, please refer to FAQ #15 at https:\/\/portal.msrc.microsoft.com\/en-us\/security-guidance\/advisory\/ADV180002\n\nHardware support for branch target injection mitigation is present: True\nWindows OS support for branch target injection mitigation is present: True\nWindows OS support for branch target injection mitigation is enabled: True\n\nSpeculation control settings for CVE-2017-5754 [rogue data cache load]\n\nHardware requires kernel VA shadowing: False\n\nSpeculation control settings for CVE-2018-3639 [speculative store bypass]\n\nHardware is vulnerable to speculative store bypass: True\nHardware support for speculative store bypass disable is present: True\nWindows OS support for speculative store bypass disable is present: True\nWindows OS support for speculative store bypass disable is enabled system-wide: False\n\nSpeculation control settings for CVE-2018-3620 [L1 terminal fault]\n\nHardware is vulnerable to L1 terminal fault: False\n\nSpeculation control settings for MDS [microarchitectural data sampling]\n\nWindows OS support for MDS mitigation is present: True\nHardware is vulnerable to MDS: False\n\n\nBTIHardwarePresent                  : True\nBTIWindowsSupportPresent            : True\nBTIWindowsSupportEnabled            : True\nBTIDisabledBySystemPolicy           : False\nBTIDisabledByNoHardwareSupport      : False\nBTIKernelRetpolineEnabled           : True\nBTIKernelImportOptimizationEnabled  : True\nKVAShadowRequired                   : False\nKVAShadowWindowsSupportPresent      : True\nKVAShadowWindowsSupportEnabled      : False\nKVAShadowPcidEnabled                : False\nSSBDWindowsSupportPresent           : True\nSSBDHardwareVulnerable              : True\nSSBDHardwarePresent                 : True\nSSBDWindowsSupportEnabledSystemWide : False\nL1TFHardwareVulnerable              : False\nL1TFWindowsSupportPresent           : True\nL1TFWindowsSupportEnabled           : False\nL1TFInvalidPteBit                   : 0\nL1DFlushSupported                   : False\nMDSWindowsSupportPresent            : True\nMDSHardwareVulnerable               : False\nMDSWindowsSupportEnabled            : False\n\nPS C:\\admin\\!PS1><\/code><\/pre>\n\n\n\n<h2 class=\"wp-block-heading\">Linksammung:<\/h2>\n\n\n\n<ul class=\"wp-block-list\"><li> <a rel=\"noreferrer noopener\" href=\"https:\/\/meltdownattack.com\/meltdown.pdf\" target=\"_blank\">Meltdown: Reading Kernel Memory from User Space<\/a> <\/li><li>2018\/01 heise <a rel=\"noreferrer noopener\" href=\"https:\/\/www.heise.de\/security\/meldung\/Prozessor-Luecken-Meltdown-und-Spectre-Intel-und-ARM-fuehren-betroffene-Prozessoren-auf-Nvidia-3934667.html\" target=\"_blank\">Prozessor-L\u00fccken Meltdown und Spectre: Intel und ARM f\u00fchren betroffene Prozessoren auf, Nvidia analysiert noch<\/a><\/li><li> 2018\/01 heise <a rel=\"noreferrer noopener\" href=\"https:\/\/www.heise.de\/security\/meldung\/Analyse-zur-Prozessorluecke-Meltdown-und-Spectre-sind-ein-Security-Supergau-3935124.html\" target=\"_blank\">Analyse zur Prozessorl\u00fccke: Meltdown und Spectre sind ein Security-Supergau<\/a>  <\/li><li> 2018\/01 heise <a rel=\"noreferrer noopener\" href=\"https:\/\/www.heise.de\/security\/meldung\/Prozessor-Luecken-Meltdown-und-Spectre-Intel-und-ARM-fuehren-betroffene-Prozessoren-auf-Nvidia-3934667.html\" target=\"_blank\">Prozessor-L\u00fccken Meltdown und Spectre: Intel und ARM f\u00fchren betroffene Prozessoren auf, Nvidia analysiert noch<\/a><\/li><li>2018\/01 heise <a rel=\"noreferrer noopener\" href=\"https:\/\/www.heise.de\/newsticker\/meldung\/AMD-Spectre-Hardwareschutz-ab-2019-mit-Zen-2-starkes-Wachstum-dank-Ryzen-Radeon-und-Mining-3956955.html\" target=\"_blank\">AMD: Spectre-Hardwareschutz ab 2019 mit Zen 2, starkes Wachstum dank Ryzen, Radeon und Mining<\/a> <\/li><li>2018\/02 heise <a rel=\"noreferrer noopener\" aria-label=\" (\u00f6ffnet in neuem Tab)\" href=\"https:\/\/www.heise.de\/security\/meldung\/Meltdown-Spectre-Microsofts-Compiler-Fix-weitgehend-wirkungslos-3970815.html\" target=\"_blank\">Meltdown &amp; Spectre: Microsofts Compiler-Fix weitgehend wirkungslos<\/a><\/li><li>2018\/05 heise <a rel=\"noreferrer noopener\" aria-label=\" (\u00f6ffnet in neuem Tab)\" href=\"https:\/\/www.heise.de\/ct\/artikel\/Kernel-Log-Neue-Linux-Kernel-verbessern-Spectre-und-Meltdown-Schutz-3963549.html\" target=\"_blank\">Kernel-Log: Neue Linux-Kernel verbessern Spectre- und Meltdown-Schutz<\/a><\/li><li>2018\/05 heise <a rel=\"noreferrer noopener\" aria-label=\" (\u00f6ffnet in neuem Tab)\" href=\"https:\/\/www.heise.de\/ct\/artikel\/CPU-Sicherheitsluecken-Spectre-NG-Updates-und-Info-Links-4053268.html\" target=\"_blank\">CPU-Sicherheitsl\u00fccken Spectre-NG: Updates und Info-Links<\/a><\/li><li>2018\/08 heise <a rel=\"noreferrer noopener\" aria-label=\" (\u00f6ffnet in neuem Tab)\" href=\"https:\/\/www.heise.de\/security\/meldung\/Linux-Kernel-und-Distributionen-schuetzen-vor-Prozessorluecke-Foreshadow-L1TF-4137264.html\" target=\"_blank\">Linux: Kernel und Distributionen sch\u00fctzen vor Prozessorl\u00fccke Foreshadow\/L1TF<\/a><\/li><li>2018\/11 heise <a rel=\"noreferrer noopener\" aria-label=\" (\u00f6ffnet in neuem Tab)\" href=\"https:\/\/www.heise.de\/security\/meldung\/Schlechte-Performance-Linux-Entwickler-entscheiden-sich-gegen-Spectre-Schutz-4230222.html\" target=\"_blank\">Schlechte Performance: Linux-Entwickler entscheiden sich gegen Spectre-Schutz<\/a><\/li><li>2019\/01 heise <a rel=\"noreferrer noopener\" aria-label=\" (\u00f6ffnet in neuem Tab)\" href=\"https:\/\/www.heise.de\/select\/ct\/2019\/3\/1549002014398779\" target=\"_blank\">Ein Jahr nach Spectre und Meltdown: AMD und Intel immer noch im Halbschlaf<\/a><\/li><li>2019\/02 heise <a rel=\"noreferrer noopener\" aria-label=\" (\u00f6ffnet in neuem Tab)\" href=\"https:\/\/www.heise.de\/security\/meldung\/Software-Schutz-vor-Spectre-Angriffen-ist-weitestgehend-nutzlos-4311666.html\" target=\"_blank\">Software-Schutz vor Spectre-Angriffen ist weitestgehend nutzlos<\/a><\/li><li>2019\/05 heise <a rel=\"noreferrer noopener\" aria-label=\" (\u00f6ffnet in neuem Tab)\" href=\"https:\/\/www.heise.de\/ct\/artikel\/Neue-Sicherheitsluecke-ZombieLoad-in-Intel-Prozessoren-4427677.html\" target=\"_blank\">Neue Sicherheitsl\u00fccke \u201eZombieLoad\u201c in Intel-Prozessoren<\/a><\/li><li>2019\/05 heise <a rel=\"noreferrer noopener\" aria-label=\" (\u00f6ffnet in neuem Tab)\" href=\"https:\/\/www.heise.de\/newsticker\/meldung\/Neue-Linux-Kernel-schuetzen-vor-ZombieLoad-aka-MDS-4422245.html\" target=\"_blank\">Neue Linux-Kernel sch\u00fctzen vor ZombieLoad aka MDS<\/a><\/li><li>2019\/06 heise <a rel=\"noreferrer noopener\" aria-label=\" (\u00f6ffnet in neuem Tab)\" href=\"https:\/\/www.heise.de\/ct\/artikel\/Updates-gegen-die-Intel-Prozessorluecken-ZombieLoad-Co-4422413.html\" target=\"_blank\">Updates gegen die Intel-Prozessorl\u00fccken ZombieLoad &amp; Co.<\/a><\/li><li>2019\/08 heise <a rel=\"noreferrer noopener\" href=\"https:\/\/www.heise.de\/security\/meldung\/SWAPGS-Details-und-Updates-zur-neuen-Spectre-Luecke-in-Intel-Prozessoren-4489897.html\" target=\"_blank\">SWAPGS: Details und Updates zur neuen Spectre-L\u00fccke in Intel-Prozessoren<\/a><\/li><\/ul>\n","protected":false},"excerpt":{"rendered":"<p>Eine Analyse der Seitenkan\u00e4le und der spekulativen Ausf\u00fchrung von Ross Mcilroy, Jaroslav Sevcik, Tobias Tebbi, Ben L. Titzer, Toon Verwaest Computersysteme streben nach drei Schl\u00fcsselsicherheitseigenschaften: Vertraulichkeit Integrit\u00e4t Verf\u00fcgbarkeit Jason Andress. The Basics of Information Security: Understanding the Fundamentals of InfoSec in Theory and Practice. Syngress Publishing, 2nd edition, 2014. Von diesen ist die Vertraulichkeit das [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"ocean_front_end_style_editor":"no","ocean_post_layout":"","ocean_both_sidebars_style":"","ocean_both_sidebars_content_width":0,"ocean_both_sidebars_sidebars_width":0,"ocean_sidebar":"0","ocean_second_sidebar":"0","ocean_disable_margins":"enable","ocean_add_body_class":"","ocean_shortcode_before_top_bar":"","ocean_shortcode_after_top_bar":"","ocean_shortcode_before_header":"","ocean_shortcode_after_header":"","ocean_has_shortcode":"","ocean_shortcode_after_title":"","ocean_shortcode_before_footer_widgets":"","ocean_shortcode_after_footer_widgets":"","ocean_shortcode_before_footer_bottom":"","ocean_shortcode_after_footer_bottom":"","ocean_display_top_bar":"default","ocean_display_header":"default","ocean_header_style":"","ocean_center_header_left_menu":"0","ocean_custom_header_template":"0","ocean_custom_logo":0,"ocean_custom_retina_logo":0,"ocean_custom_logo_max_width":0,"ocean_custom_logo_tablet_max_width":0,"ocean_custom_logo_mobile_max_width":0,"ocean_custom_logo_max_height":0,"ocean_custom_logo_tablet_max_height":0,"ocean_custom_logo_mobile_max_height":0,"ocean_header_custom_menu":"0","ocean_menu_typo_font_family":"0","ocean_menu_typo_font_subset":"","ocean_menu_typo_font_size":0,"ocean_menu_typo_font_size_tablet":0,"ocean_menu_typo_font_size_mobile":0,"ocean_menu_typo_font_size_unit":"px","ocean_menu_typo_font_weight":"","ocean_menu_typo_font_weight_tablet":"","ocean_menu_typo_font_weight_mobile":"","ocean_menu_typo_transform":"","ocean_menu_typo_transform_tablet":"","ocean_menu_typo_transform_mobile":"","ocean_menu_typo_line_height":0,"ocean_menu_typo_line_height_tablet":0,"ocean_menu_typo_line_height_mobile":0,"ocean_menu_typo_line_height_unit":"","ocean_menu_typo_spacing":0,"ocean_menu_typo_spacing_tablet":0,"ocean_menu_typo_spacing_mobile":0,"ocean_menu_typo_spacing_unit":"","ocean_menu_link_color":"","ocean_menu_link_color_hover":"","ocean_menu_link_color_active":"","ocean_menu_link_background":"","ocean_menu_link_hover_background":"","ocean_menu_link_active_background":"","ocean_menu_social_links_bg":"","ocean_menu_social_hover_links_bg":"","ocean_menu_social_links_color":"","ocean_menu_social_hover_links_color":"","ocean_disable_title":"default","ocean_disable_heading":"default","ocean_post_title":"","ocean_post_subheading":"","ocean_post_title_style":"","ocean_post_title_background_color":"","ocean_post_title_background":0,"ocean_post_title_bg_image_position":"","ocean_post_title_bg_image_attachment":"","ocean_post_title_bg_image_repeat":"","ocean_post_title_bg_image_size":"","ocean_post_title_height":0,"ocean_post_title_bg_overlay":0.5,"ocean_post_title_bg_overlay_color":"","ocean_disable_breadcrumbs":"default","ocean_breadcrumbs_color":"","ocean_breadcrumbs_separator_color":"","ocean_breadcrumbs_links_color":"","ocean_breadcrumbs_links_hover_color":"","ocean_display_footer_widgets":"default","ocean_display_footer_bottom":"default","ocean_custom_footer_template":"0","osp_disable_panel":"default","osh_disable_topbar_sticky":"default","osh_disable_header_sticky":"default","osh_sticky_header_style":"default","osh_sticky_header_effect":"","osh_custom_sticky_logo":0,"osh_custom_retina_sticky_logo":0,"osh_custom_sticky_logo_height":0,"osh_background_color":"","osh_links_color":"","osh_links_hover_color":"","osh_links_active_color":"","osh_links_bg_color":"","osh_links_hover_bg_color":"","osh_links_active_bg_color":"","osh_menu_social_links_color":"","osh_menu_social_hover_links_color":"","ocean_post_oembed":"","ocean_post_self_hosted_media":"","ocean_post_video_embed":"","ocean_link_format":"","ocean_link_format_target":"self","ocean_quote_format":"","ocean_quote_format_link":"post","ocean_gallery_link_images":"off","ocean_gallery_id":[],"footnotes":""},"categories":[9,50,48,49,52,44,51],"tags":[],"class_list":["post-965","post","type-post","status-publish","format-standard","hentry","category-__news","category-amd","category-cpu","category-intel","category-meltdown","category-security","category-spectre","entry"],"_links":{"self":[{"href":"https:\/\/www.mosi.at\/ikt\/wp-json\/wp\/v2\/posts\/965","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.mosi.at\/ikt\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.mosi.at\/ikt\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.mosi.at\/ikt\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.mosi.at\/ikt\/wp-json\/wp\/v2\/comments?post=965"}],"version-history":[{"count":0,"href":"https:\/\/www.mosi.at\/ikt\/wp-json\/wp\/v2\/posts\/965\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.mosi.at\/ikt\/wp-json\/wp\/v2\/media?parent=965"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.mosi.at\/ikt\/wp-json\/wp\/v2\/categories?post=965"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.mosi.at\/ikt\/wp-json\/wp\/v2\/tags?post=965"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}