Episode 357: The Return of Spectre




TechSNAP show

Summary: <p>New variants, bad patches, busted microcode and devastated performance. It’s a TechSNAP Meltdown and Spectre check up.</p> <p>Plus Tesla gets hit by Monero Cryptojacking, and a dating site that matches people based on their bad passwords…. So we gave it a go!</p><p>Sponsored By:</p><ul> <li> <a rel="nofollow" href="http://ixsystems.com/techsnap">iXSystems</a>: <a rel="nofollow" href="http://ixsystems.com/techsnap">Get a system purpose built for you.</a> Promo Code: Tell them we sent you!</li> <li> <a rel="nofollow" href="http://techsnap.ting.com">Ting</a>: <a rel="nofollow" href="http://techsnap.ting.com">Save $25 off a device, or get $25 in service credits!</a> Promo Code: Visit techsnap.ting.com</li> <li> <a rel="nofollow" href="https://do.co/snap">Digital Ocean</a>: <a rel="nofollow" href="https://do.co/snap">Apply our promo snapocean after you create your account, and get a $10 credit.</a> Promo Code: snapocean</li> </ul><p>Links:</p><ul> <li> <a title="People Are Actually Using a Joke Dating Site That Matches People Based on Their Passwords " rel="nofollow" href="https://motherboard.vice.com/en_us/article/wj4jyz/words-of-heart-password-joke-dating-website-">People Are Actually Using a Joke Dating Site That Matches People Based on Their Passwords </a> — This website answers the question no one ever asked: what if you dated someone who used the same password?</li> <li> <a title="Flight Sim Company Embeds Malware to Steal Pirates' Passwords" rel="nofollow" href="https://torrentfreak.com/flight-sim-company-embeds-malware-to-steal-pirates-passwords-180219/">Flight Sim Company Embeds Malware to Steal Pirates' Passwords</a> — Flight sim company FlightSimLabs has found itself in trouble after installing malware onto users' machines as an anti-piracy measure. Code embedded in its A320-X module contained a mechanism for detecting 'pirate' serial numbers distributed on The Pirate Bay, which then triggered a process through which the company stole usernames and passwords from users' web browsers.</li> <li> <a title="Lessons from the Cryptojacking Attack at Tesla" rel="nofollow" href="https://blog.redlock.io/cryptojacking-tesla">Lessons from the Cryptojacking Attack at Tesla</a> — In cases involving the WannaMine malware, a tool called Mimikatz is used to pull credentials from a computer’s memory to infect other computers on the network. The malware then uses the infected computers’ compute to mine a cryptocurrency called Monero quietly in the background.</li> <li> <a title="Chef InSpec 2.0" rel="nofollow" href="https://techcrunch.com/2018/02/20/chef-inspec-2-0-wants-to-help-companies-automate-security-compliance-in-cloud-apps/">Chef InSpec 2.0</a> — InSpec is a free open source tool that enables development teams to express security and compliance rules as code. Version 1.0 was about ensuring that applications were set up properly. The new version extends this capability to the cloud where companies are running the applications, allowing teams to test and write rules for compliance with cloud security policy. It supports AWS and Azure and comes with 30 common configurations out of the box including Docker, IIS, NGINX and PostgreSQL.</li> <li> <a title="meltdownspectre-patches summary on Github" rel="nofollow" href="https://github.com/hannob/meltdownspectre-patches">meltdownspectre-patches summary on Github</a> — Summary of the patch status for Meltdown / Spectre.</li> <li> <a title="Spectre &amp; Meltdown Checker for Linux" rel="nofollow" href="https://github.com/speed47/spectre-meltdown-checker">Spectre &amp; Meltdown Checker for Linux</a> — A simple shell script to tell if your Linux installation is vulnerable against the 3 "speculative execution" CVEs that were made public early 2018.</li> <li> <a title="FreeBSD Finally Gets Mitigated For Spectre &amp; Meltdown" rel="nofollow" href="https://www.phoronix.com/scan.php?page=news_item&amp;px=FreeBSD-Spectre-Meltdown-Fix">FreeBSD Finally Gets Mitigated For Spectre &amp; Meltdown</a> — It's taken a few more weeks longer than most of the Linux distributions to be re-worked for Spectre/Meltdown mitigation as well as DragonFlyBSD, but with FreeBSD Revision 329462 it appears their initial fixes are in place. </li> <li><a title="SpeculativeExecutionVulnerabilities - FreeBSD Wiki" rel="nofollow" href="https://wiki.freebsd.org/SpeculativeExecutionVulnerabilities">SpeculativeExecutionVulnerabilities - FreeBSD Wiki</a></li> <li><a title="Red Hat Checker" rel="nofollow" href="https://access.redhat.com/security/vulnerabilities/speculativeexecution">Red Hat Checker</a></li> <li><a title="Debian Checker" rel="nofollow" href="https://packages.debian.org/stretch-backports/spectre-meltdown-checker?utm_source=dlvr.it&amp;utm_medium=twitter">Debian Checker</a></li> <li> <a title="Microsoft's free analytics service sniffs out Meltdown, Spectre patch status" rel="nofollow" href="https://www.computerworld.com/article/3254657/microsoft-windows/microsofts-free-analytics-service-sniffs-out-meltdown-spectre-patch-status.html">Microsoft's free analytics service sniffs out Meltdown, Spectre patch status</a> — Windows Analytics can now scan enterprise PCs running Windows 10, Windows 8.1 and Windows 7 and report on whether they're prepped to fend off attacks based on the Meltdown and Spectre vulnerabilities.</li> <li> <a title="KPTI/KAISER Meltdown Initial Performance Regressions" rel="nofollow" href="http://www.brendangregg.com/blog/2018-02-09/kpti-kaiser-meltdown-performance.html">KPTI/KAISER Meltdown Initial Performance Regressions</a> — In this post I'll look at the Linux kernel page table isolation (KPTI) patches that workaround Meltdown: what overheads to expect, and ways to tune them. Much of my testing was on Linux 4.14.11 and 4.14.12 a month ago, before we deployed in production. Some older kernels have the KAISER patches for Meltdown, and so far the performance overheads look similar. These results aren't final, since more changes are still being developed, such as for Spectre.</li> <li> <a title="New Spectre, Meltdown variants leave victims open to side-channel attacks" rel="nofollow" href="https://www.techrepublic.com/article/new-spectre-meltdown-variants-leave-victims-open-to-side-channel-attacks/">New Spectre, Meltdown variants leave victims open to side-channel attacks</a> — MeltdownPrime and SpectrePrime, found by Princeton and NVIDIA researchers, may require significant hardware changes to be mitigated. </li> <li><a title="Question: How to Lock Down Firefox Addons" rel="nofollow" href="https://pastebin.com/6p82zt3g">Question: How to Lock Down Firefox Addons</a></li> <li><a title="Locking preferences - MozillaZine Knowledge Base" rel="nofollow" href="http://kb.mozillazine.org/Locking_preferences">Locking preferences - MozillaZine Knowledge Base</a></li> <li><a title="CCK2 Firefox Lockdown Tool" rel="nofollow" href="https://mike.kaply.com/cck2/">CCK2 Firefox Lockdown Tool</a></li> <li><a title="Question: Namespaces and sandboxing" rel="nofollow" href="https://pastebin.com/ghMc0Nvi">Question: Namespaces and sandboxing</a></li> <li><a title="Linux Sandboxing" rel="nofollow" href="https://chromium.googlesource.com/chromium/src/+/lkcr/docs/linux_sandboxing.md">Linux Sandboxing</a></li> <li><a title="Firejail" rel="nofollow" href="https://firejail.wordpress.com/">Firejail</a></li> </ul>