https://thehackernews.com/2020/08/foreshadow-processor-vulnerability.html

"It turns out that the root cause behind several previously disclosed speculative execution attacks against modern processors, such as Meltdown and Foreshadow, was misattributed to 'prefetching effect,' resulting in hardware vendors releasing incomplete mitigations and countermeasures"
Great! Patched=unpatched for years...

Even more: "The speculative dereferencing issue — in certain attacks like Rowhammer, cache attacks, and DRAMA — could let attackers recover the physical addresses of JavaScript variables and exfiltrate information via transient execution remotely via a web browser."
So maybe after all, these attacks are not that "less likely to succeed" as classified before? :-(
0

Keep in touch with Experts Exchange

Tech news and trends delivered to your inbox every month