EVGA

Weakness in Intel chips lets researchers steal encrypted SSH keystrokes

Author
rjohnson11
EVGA Forum Moderator
  • Total Posts : 102262
  • Reward points : 0
  • Joined: 2004/10/05 12:44:35
  • Location: Netherlands
  • Status: online
  • Ribbons : 84
2019/09/11 00:25:09 (permalink)
https://arstechnica.com/information-technology/2019/09/weakness-in-intel-chips-lets-researchers-steal-encrypted-ssh-keystrokes/
 
DDIO, or Direct Data I/O, is an Intel-exclusive performance enhancement that allows NICs to directly access a processor's L3 cache, completely bypassing the a server's RAM, to increase NIC performance and lower latencies. Cybersecurity researchers from the Vrije Universiteit Amsterdam and ETH Zurich, in a research paper published on Tuesday, have discovered a critical vulnerability with DDIO that allows compromised servers in a network to steal data from every other machine on its local network. This include the ability to obtain keystrokes and other sensitive data flowing through the memory of vulnerable servers. This effect is compounded in data centers that have not just DDIO, but also RDMA (remote direct memory access) enabled, in which a single server can compromise an entire network. RDMA is a key ingredient in shoring up performance in HPCs and supercomputing environments. Intel in its initial response asked customers to disable DDIO and RDMA on machines with access to untrusted networks, while it works on patches.
 
I personally expect Intel will have patches for this very soon

AMD Ryzen 9 7950X,  Corsair Mp700 Pro M.2, 64GB Corsair Dominator Titanium DDR5  X670E Steel Legend, MSI RTX 4090 Associate Code: H5U80QBH6BH0AXF. I am NOT an employee of EVGA

#1

8 Replies Related Threads

    aka_STEVE_b
    EGC Admin
    • Total Posts : 17692
    • Reward points : 0
    • Joined: 2006/02/26 06:45:46
    • Location: OH
    • Status: offline
    • Ribbons : 69
    Re: Weakness in Intel chips lets researchers steal encrypted SSH keystrokes 2019/09/11 05:16:01 (permalink)
    just another one to add to the pile of other exploits ....

    AMD RYZEN 9 5900X  12-core cpu~ ASUS ROG Crosshair VIII Dark Hero ~ EVGA RTX 3080 Ti FTW3~ G.SKILL Trident Z NEO 32GB DDR4-3600 ~ Phanteks Eclipse P400s red case ~ EVGA SuperNOVA 1000 G+ PSU ~ Intel 660p M.2 drive~ Crucial MX300 275 GB SSD ~WD 2TB SSD ~CORSAIR H115i RGB Pro XT 280mm cooler ~ CORSAIR Dark Core RGB Pro mouse ~ CORSAIR K68 Mech keyboard ~ HGST 4TB Hd.~ AOC AGON 32" monitor 1440p @ 144Hz ~ Win 10 x64
    #2
    ty_ger07
    Insert Custom Title Here
    • Total Posts : 21171
    • Reward points : 0
    • Joined: 2008/04/10 23:48:15
    • Location: traveler
    • Status: online
    • Ribbons : 270
    Re: Weakness in Intel chips lets researchers steal encrypted SSH keystrokes 2019/09/11 05:59:00 (permalink)
    Intel's performance keeps dropping.

    ASRock Z77 • Intel Core i7 3770K • EVGA GTX 1080 • Samsung 850 Pro • Seasonic PRIME 600W Titanium
    My EVGA Score: 1546 • Zero Associates Points • I don't shill

    #3
    Cool GTX
    EVGA Forum Moderator
    • Total Posts : 30983
    • Reward points : 0
    • Joined: 2010/12/12 14:22:25
    • Location: Folding for the Greater Good
    • Status: online
    • Ribbons : 122
    Re: Weakness in Intel chips lets researchers steal encrypted SSH keystrokes 2019/09/11 06:37:43 (permalink)
    another patch .....  the world we live in, new exploits of existing features
     
     

    Learn your way around the EVGA Forums, Rules & limits on new accounts Ultimate Self-Starter Thread For New Members

    I am a Volunteer Moderator - not an EVGA employee

    https://foldingathome.org -->become a citizen scientist and contribute your compute power to help fight global health threats

    RTX Project EVGA X99 FTWK Nibbler EVGA X99 Classified EVGA 3080Ti FTW3 Ultra


    #4
    RainStryke
    The Advocate
    • Total Posts : 15872
    • Reward points : 0
    • Joined: 2007/07/19 19:26:55
    • Location: Kansas
    • Status: offline
    • Ribbons : 60
    Re: Weakness in Intel chips lets researchers steal encrypted SSH keystrokes 2019/09/11 07:05:55 (permalink)
    With this being an enterprise level issue rather than consumer, I bet this will get fixed quick.

    Main PC | Secondary PC
    Intel i9 10900K | Intel i7 9700K

    MSI MEG Z490 ACE | Gigabyte Aorus Z390 Master
    ASUS TUF RTX 3090 | NVIDIA RTX 2070 Super
    32GB G.Skill Trident Z Royal 4000MHz CL18 | 32GB G.Skill Trident Z RGB 4266MHz CL17
    SuperFlower Platinum SE 1200w | Seasonic X-1250
    Samsung EVO 970 1TB and Crucial P5 1TB | Intel 760p 1TB and Crucial MX100 512GB
    Cougar Vortex CF-V12HPB x9 | Cougar Vortex CF-V12SPB-RGB x5
     
    3DMark Results:Time Spy|Port Royal

    #5
    GTXJackBauer
    Omnipotent Enthusiast
    • Total Posts : 10323
    • Reward points : 0
    • Joined: 2010/04/19 22:23:25
    • Location: (EVGA Discount) Associate Code : LMD3DNZM9LGK8GJ
    • Status: offline
    • Ribbons : 48
    Re: Weakness in Intel chips lets researchers steal encrypted SSH keystrokes 2019/09/11 10:05:56 (permalink)
    Why is everyone freaking out?  We don't patch our games and or windows?  This is how the future will be like.  Military hardware will get updates too.  

     Use this Associate Code at your checkouts or follow these instructions for Up to 10% OFF on all your EVGA purchases:
    LMD3DNZM9LGK8GJ
    #6
    ty_ger07
    Insert Custom Title Here
    • Total Posts : 21171
    • Reward points : 0
    • Joined: 2008/04/10 23:48:15
    • Location: traveler
    • Status: online
    • Ribbons : 270
    Re: Weakness in Intel chips lets researchers steal encrypted SSH keystrokes 2019/09/11 12:08:27 (permalink)
    GTXJackBauer
    Why is everyone freaking out?  We don't patch our games and or windows?  This is how the future will be like.  Military hardware will get updates too.  

    Intel patches keep making their hardware slower and slower while AMD is repeatedly unaffected. Like in another thread, you said "false advertising". This is similar. Performance keeps dropping from what was expected. And, how many similar Intel exploits within the last year are we up to?

    ASRock Z77 • Intel Core i7 3770K • EVGA GTX 1080 • Samsung 850 Pro • Seasonic PRIME 600W Titanium
    My EVGA Score: 1546 • Zero Associates Points • I don't shill

    #7
    GTXJackBauer
    Omnipotent Enthusiast
    • Total Posts : 10323
    • Reward points : 0
    • Joined: 2010/04/19 22:23:25
    • Location: (EVGA Discount) Associate Code : LMD3DNZM9LGK8GJ
    • Status: offline
    • Ribbons : 48
    Re: Weakness in Intel chips lets researchers steal encrypted SSH keystrokes 2019/09/11 12:56:49 (permalink)
    ty_ger07
    GTXJackBauer
    Why is everyone freaking out?  We don't patch our games and or windows?  This is how the future will be like.  Military hardware will get updates too.  

    Intel patches keep making their hardware slower and slower while AMD is repeatedly unaffected. Like in another thread, you said "false advertising". This is similar. Performance keeps dropping from what was expected. And, how many similar Intel exploits within the last year are we up to?



    I agree with u on that front.  They should comp us for the degradation.  

     Use this Associate Code at your checkouts or follow these instructions for Up to 10% OFF on all your EVGA purchases:
    LMD3DNZM9LGK8GJ
    #8
    RainStryke
    The Advocate
    • Total Posts : 15872
    • Reward points : 0
    • Joined: 2007/07/19 19:26:55
    • Location: Kansas
    • Status: offline
    • Ribbons : 60
    Re: Weakness in Intel chips lets researchers steal encrypted SSH keystrokes 2019/09/11 16:09:44 (permalink)
    GTXJackBauer
    ty_ger07
    GTXJackBauer
    Why is everyone freaking out?  We don't patch our games and or windows?  This is how the future will be like.  Military hardware will get updates too.  

    Intel patches keep making their hardware slower and slower while AMD is repeatedly unaffected. Like in another thread, you said "false advertising". This is similar. Performance keeps dropping from what was expected. And, how many similar Intel exploits within the last year are we up to?



    I agree with u on that front.  They should comp us for the degradation.  




    For real, i'm still really salty that my i7 7820X is vulnerable to a few things related to hyper-threading and the fix is a patch that you have to load separately. I attempted to patch it, but Asus didn't make the installation easy to understand. After a few hours, I just gave up and turned off Hyper-threading. 

    Main PC | Secondary PC
    Intel i9 10900K | Intel i7 9700K

    MSI MEG Z490 ACE | Gigabyte Aorus Z390 Master
    ASUS TUF RTX 3090 | NVIDIA RTX 2070 Super
    32GB G.Skill Trident Z Royal 4000MHz CL18 | 32GB G.Skill Trident Z RGB 4266MHz CL17
    SuperFlower Platinum SE 1200w | Seasonic X-1250
    Samsung EVO 970 1TB and Crucial P5 1TB | Intel 760p 1TB and Crucial MX100 512GB
    Cougar Vortex CF-V12HPB x9 | Cougar Vortex CF-V12SPB-RGB x5
     
    3DMark Results:Time Spy|Port Royal

    #9
    Jump to:
  • Back to Mobile