새로운 DDRop 공격이 Intel TDX와 AMD SEV-SNP의 기밀 컴퓨팅을 무력화했습니다.
연구자들은 DDRop이라는 새로운 하드웨어 공격을 공개했습니다. 이 공격은 서버의 메모리 보호를 깨고, 프로세서가 최신 데이터 대신 이전 암호화된 데이터를 계속 읽게 만듭니다. 공격자는 이미 서버의 소프트웨어를 제어하고 기계에 잠시 접근하여 작은 회로를 삽입할 수 있어야 합니다.
The new DDRop attack compromises Intel TDX and AMD SEV-SNP confidential computing.
Researchers have disclosed a new hardware attack called DDRop that compromises memory protection in Intel and AMD confidential computing. This attack allows the processor to continue reading old encrypted data as if it were current, effectively dropping writes to the server's memory. An attacker needs to control the server's software and briefly access the machine to insert a small circuit.