Fidelity bank banner UBA banner
Security flaws put billions of smartphones and computers at risk

By Selena Larson on 04/01/2018

Share on facebook Yahoo mail icon Gmail icon Share on Google+

Views: 1,427


Two major flaws in computer chips could leave a huge number of computers and smartphones vulnerable to security concerns, researchers revealed Wednesday.

The flaws could allow an attacker to read sensitive data stored in the memory, like passwords, or look at what tabs someone has open on their computer, researchers found. Daniel Gruss, a researcher from Graz University of Technology who helped identify the flaw, said it may be difficult to execute an attack, but billions of devices were impacted.

Called Meltdown and Spectre, the flaws exist in processors, a building block of computers that acts as the brain. Modern processors are designed to perform something called “speculative execution.” That means they predict what tasks they will be asked to execute and rapidly access multiple areas of memory at the same time.

That data is supposed to be protected and isolated, but researchers discovered that in some cases, the information can be exposed while the processor queues it up.

Researchers say almost every computing system – desktops, laptops, smartphones, and cloud servers – are affected by the Spectre bug. Meltdown appears to be specific to Intel (INTC) chips.

“More specifically, all modern processors capable of keeping many instructions in flight are potentially vulnerable. In particular, we have verified Spectre on Intel, AMD, and ARM processors,” the researchers said.

Government agencies issued statements warning users about the vulnerabilities.

The U.S. Computer Emergency Readiness Team said that while the flaws “could allow an attacker to obtain access to sensitive information,” it’s not so far aware of anyone doing so.

The agency urged people to read its detailed statement on the vulnerabilities, as well as those from Microsoft and Mozilla.

The U.K.’s National Cyber Security Center advised organisations and individuals to “continue to protect their systems from threats by installing patches as soon as they become available.”

Google (GOOGL) programmer Jann Horn of Project Zero was one of the researchers who discovered the flaws. In a blog post he said his group alerted chipmakers to the issues in June. Since last fall, security researchers and companies have investigated and updated software systems to address the bugs.

Intel chips are found in everything from personal computers to medical equipment. The company’s shares were down 3% on Wednesday.

The company said in a press release that “Many types of computing devices — with many different vendors’ processors and operating systems — are susceptible to these exploits.”

Intel said it is working with other chipmakers including AMD (AMD) and ARM Holdings to solve the issue. ARM said in a statement a small subset of its processors are susceptible to the flaws. AMD said in a statement there is a “near zero risk of exploitation” for one of the security issues, due to architecture differences.

A fix requires both the chip manufacturers and software makers to update their products before pushing it out.

Estimates posted on Linux message boards suggested computer performance could slow down between 5% and 30% once patched, however Intel said users will not see significant performance changes.

Tech website The Register was first to report the processor flaws on Tuesday.

A spokesperson for Microsoft (MSFT) told CNNMoney the company is aware of the issue and is in the process of deploying mitigations to cloud services and has released security updates to protect Windows users.

Google Cloud Platform has been updated to prevent the vulnerabilities, the company said.

Amazon (AMZN) said in a statement most of its cloud computing machines affected by the flaw are already protected, but it is updating the rest on Wednesday.

Researchers said patches were available for Apple’s (AAPL) OS X. The company did not respond to a request for comment.

It's important for all users to update their devices when new updates are released.

Flaws in chips are unusual. Back in 1994, a major error in Intel’s Pentium processor caused computers to incorrectly calculate results. (CNN)

Source News Express

Posted 04/01/2018 11:09:59 AM

 

Share on facebook Yahoo mail icon Gmail icon Share on Google+


 

CLASSIFIED ADS

 

You may also like...
Oil Price War: Senate wades into FG, NLC...

U.S Election: Trump goes to court

Army arrests 40 suspects in Lagos, Ogun

Borno NSCDC vows to curb use of mega...

Terrorism: Shine your eyes, Ambode tells Lagosians

BREAKING NEWS: Adeleke’s brother disgraces APC candidate to...

Anxiety as naira crashes to N400 per dollar...

Jonathan, Ijaw Nation mourn Oronto Douglas

Igbinedion: Judgment in line with the law, says...

Victor Moses shoots down hosts Poland as Super...

Flood washes away 200 rice farms in Jigawa...

Families of fallen heroes to get N4.3m

 

Latest News EFCC lists 22 witnesses to testify against Fayose IPOB reveals Nnamdi Kanu’s position on 2019 Presidential election Boko Haram sacks two communities in Borno Ministry releases details of billions spent on 292 water projects in 7 years 45 Nigerian firms flaunt potential at SNEPCo exhibition 2019: Arewa youths threaten to stop Atiku over Fani-Kayode, Nnamdi Kanu Minimum Wage: NLC threatens to embark on fresh industrial action on November 6 I will contest in 2019, says Shehu Sani Don’t disenfranchise Zamfara electorate, CLO tells INEC •Urges Buhari to call Oshiomhole to order Wike an Action Governor — Prof. Gidado Buhari set to visit Seme border Police arrests drug store operator for murder in Borno

 

Most Read NUDE PHOTO OF OMOTOLA JALADE-EKEINDE surfaces online (408,396 views) Nigerian female sex addict opens up, says ‘I like it with both men and women’ (383,308 views) Shameless Genevieve Nnaji exposes breasts in public (315,709 views) Finally named: The full list of friends of Nigerian female sex addict who prowled Facebook (258,701 views) OLUMBA OLUMBA OBU (the one who called himself God) IS DEAD (238,165 views) Igbo scholar disgraces Femi Fani-Kayode •Demolishes claims on Igbo/Yoruba history with facts and figures (224,847 views) Breaking News: POPULAR REVEREND CONVERTS TO ISLAM in Kaduna (Nigeria) (204,656 views) OBJ’s son reported dead in Lagos plane crash •Names of more victims emerge (186,079 views) My wasted years in Olumba Olumba Obu’s Evil Brotherhood (170,914 views) THE FINAL DISGRACE: Igbo scholar unleashes more facts about Igbo/Yoruba history, finishes off Femi Fani-Kayode with second article (166,221 views) Lagos plane crash: Journalist releases victims’ names (161,909 views) Gunmen kill ASP, 2 other police officers in vain bid to kidnap Rivers PDP chieftain (149,621 views)

 

Categories Advertorials (3) African Press Organisation (81) Art & Literature (70) Business & Economy (3,701) Business Verdict (52) Columnists (949) Complaints & Requests (94) Enterprise & Opportunities (207) Entertainment (561) Features (660) Global Business Monitor (304) International (2,559) Interview (165) Live Commentary (28) Love Matters (145) News (39,805) Opinion (1,126) Pidgin (13) Politics (7,325) Religion (883) Sports (1,738) Stock Watch (35) AMA & Al Jazeera Global Update

 

NLNG Prize for Literature 2018

Zenith Zero Balance

CBN banner

Firstmobile banner

 

 

 

NEWS EXPRESS TV

LIBYA vs NIGERIA 2-3 Goals Highlights

 

APO Group Partner

 

 

CLASSIFIED ADS

GOCOP Accredited Member

GOCOP Accredited member

 

 

Africa Media Agency and Al Jazeera

Advertisement