EVGA

Weakness in Intel chips lets researchers steal encrypted SSH keystrokes

Author
rjohnson11
EVGA Forum Moderator
  • Total Posts : 73377
  • Reward points : 0
  • Joined: 2004/10/05 12:44:35
  • Location: Europe
  • Status: offline
  • Ribbons : 68
2019/09/11 00:25:09 (permalink)
https://arstechnica.com/information-technology/2019/09/weakness-in-intel-chips-lets-researchers-steal-encrypted-ssh-keystrokes/
 
DDIO, or Direct Data I/O, is an Intel-exclusive performance enhancement that allows NICs to directly access a processor's L3 cache, completely bypassing the a server's RAM, to increase NIC performance and lower latencies. Cybersecurity researchers from the Vrije Universiteit Amsterdam and ETH Zurich, in a research paper published on Tuesday, have discovered a critical vulnerability with DDIO that allows compromised servers in a network to steal data from every other machine on its local network. This include the ability to obtain keystrokes and other sensitive data flowing through the memory of vulnerable servers. This effect is compounded in data centers that have not just DDIO, but also RDMA (remote direct memory access) enabled, in which a single server can compromise an entire network. RDMA is a key ingredient in shoring up performance in HPCs and supercomputing environments. Intel in its initial response asked customers to disable DDIO and RDMA on machines with access to untrusted networks, while it works on patches.
 
I personally expect Intel will have patches for this very soon

Specs: AMD 2920X Threadripper, Corsair MP510 M.2, 64GB Corsair RGB Dominator,  ASRock X399 Taichi, Corsair 1000D, EVGA RTX 2080ti Black

Associate Code: H5U80QBH6BH0AXF



#1

8 Replies Related Threads

    aka_STEVE_b
    EGC Admin
    • Total Posts : 13387
    • Reward points : 0
    • Joined: 2006/02/26 06:45:46
    • Location: Wouldn't you like to know....
    • Status: online
    • Ribbons : 38
    Re: Weakness in Intel chips lets researchers steal encrypted SSH keystrokes 2019/09/11 05:16:01 (permalink)
    just another one to add to the pile of other exploits ....

    AMD RYZEN 9 3900X  12-core cpu~ Gigabyte X570 Aorus Elite board ~ EVGA RTX 2080 SUPER XC2 ULTRA OC~ G.SKILL Trident Z NEO 16 GB DDR4 3600 ~ Phanteks Eclipse P400s red case ~ EVGA SuperNOVA 1000 G+ PSU ~ Intel 660p M.2 drive~ Crucial MX300 275 Gig SSD ~ CORSAIR H80i v2 cooler ~ CORSAIR M65 elite mouse ~ CORSAIR K68 RGB Mechanical Keyboard~ HGST 4TB Hd.~ AOC AGON 31.5" Gaming monitor 2560 X 1440 (144Hz) ~ Win 10 x64 
    ................ GET UP TO A 10% DISCOUNT ON PURCHASES BY CLICKING ....VVVVVVVVV.........
     
    #2
    ty_ger07
    Insert Custom Title Here
    • Total Posts : 15345
    • Reward points : 0
    • Joined: 2008/04/10 23:48:15
    • Location: global traveler
    • Status: offline
    • Ribbons : 147
    Re: Weakness in Intel chips lets researchers steal encrypted SSH keystrokes 2019/09/11 05:59:00 (permalink)
    Intel's performance keeps dropping.

    ASRock Z77 • Intel Core i7 3770K • EVGA GTX 1080 • Samsung 850 Pro • Corsair AX1200
     
    Disclaimer: I own shares of AMD, Intel, and NVIDIA stock.
    #3
    Cool GTX
    EVGA Forum Moderator
    • Total Posts : 16817
    • Reward points : 0
    • Joined: 2010/12/12 14:22:25
    • Location: Folding for the Greater Good
    • Status: online
    • Ribbons : 112
    Re: Weakness in Intel chips lets researchers steal encrypted SSH keystrokes 2019/09/11 06:37:43 (permalink)
    another patch .....  the world we live in, new exploits of existing features
     
     

    RTX Project EVGA X99 FTWK-5930K,EVGA2080Ti EVGA-1200P2  Nibbler EVGA X99 3-GPU Water Loop 1600P2  AIO Folding  1080Ti FTW3 Hybrid, 1200P

    Thank You for Your Support






    #4
    RainStryke
    The Advocate
    • Total Posts : 15090
    • Reward points : 0
    • Joined: 2007/07/19 19:26:55
    • Location: Kansas
    • Status: offline
    • Ribbons : 43
    Re: Weakness in Intel chips lets researchers steal encrypted SSH keystrokes 2019/09/11 07:05:55 (permalink)
    With this being an enterprise level issue rather than consumer, I bet this will get fixed quick.

    Main PC|CPU: Intel i7 9700K@5.1GHz|CPU Cooler:EVGA CLC280|Motherboard:Gigabyte Aorus Z390 Master|GPU:ASUS STRIX RTX 2080|Monitor:Dell S2716DG|RAM:32GB G.Skill Trident Z 4266MHz CL17|PSU:EVGA G5 750w|SSD:Samsung EVO 970 1TB|Case:Andees Crystal Cube

    2nd/Loaner|CPU: Intel i7 7820X|CPU Cooler:Noctua NH-U14S|Motherboard:Asus STRIX X299-E Gaming|GPU:Power Color Red Dragon RX 5700XT|Monitor:Acer CB271HU|RAM:32GB Corsair Vengeance RGB 3600MHz CL18|PSU:Seasonic X-1250|SSD:Crucial MX100 512GB|Case:Corsair 220T RGB Air Flow
     
    EVGA Affiliate Code: S27QNQME0X
    Associate Code: PS5FLYJJI3DTQO8
    #5
    GTXJackBauer
    CLASSIFIED ULTRA Member
    • Total Posts : 6178
    • Reward points : 0
    • Joined: 2010/04/19 22:23:25
    • Location: U.S.A
    • Status: offline
    • Ribbons : 35
    Re: Weakness in Intel chips lets researchers steal encrypted SSH keystrokes 2019/09/11 10:05:56 (permalink)
    Why is everyone freaking out?  We don't patch our games and or windows?  This is how the future will be like.  Military hardware will get updates too.  

    Use this Associate Code at your checkouts, to get 5%-10% discounts on all your EVGA purchases:
    LMD3DNZM9LGK8GJ
    Use this Rewards Code below when registering your EVGA products. 
    (Make sure to upload your invoice.)
    #6
    ty_ger07
    Insert Custom Title Here
    • Total Posts : 15345
    • Reward points : 0
    • Joined: 2008/04/10 23:48:15
    • Location: global traveler
    • Status: offline
    • Ribbons : 147
    Re: Weakness in Intel chips lets researchers steal encrypted SSH keystrokes 2019/09/11 12:08:27 (permalink)
    GTXJackBauer
    Why is everyone freaking out?  We don't patch our games and or windows?  This is how the future will be like.  Military hardware will get updates too.  

    Intel patches keep making their hardware slower and slower while AMD is repeatedly unaffected. Like in another thread, you said "false advertising". This is similar. Performance keeps dropping from what was expected. And, how many similar Intel exploits within the last year are we up to?

    ASRock Z77 • Intel Core i7 3770K • EVGA GTX 1080 • Samsung 850 Pro • Corsair AX1200
     
    Disclaimer: I own shares of AMD, Intel, and NVIDIA stock.
    #7
    GTXJackBauer
    CLASSIFIED ULTRA Member
    • Total Posts : 6178
    • Reward points : 0
    • Joined: 2010/04/19 22:23:25
    • Location: U.S.A
    • Status: offline
    • Ribbons : 35
    Re: Weakness in Intel chips lets researchers steal encrypted SSH keystrokes 2019/09/11 12:56:49 (permalink)
    ty_ger07
    GTXJackBauer
    Why is everyone freaking out?  We don't patch our games and or windows?  This is how the future will be like.  Military hardware will get updates too.  

    Intel patches keep making their hardware slower and slower while AMD is repeatedly unaffected. Like in another thread, you said "false advertising". This is similar. Performance keeps dropping from what was expected. And, how many similar Intel exploits within the last year are we up to?



    I agree with u on that front.  They should comp us for the degradation.  

    Use this Associate Code at your checkouts, to get 5%-10% discounts on all your EVGA purchases:
    LMD3DNZM9LGK8GJ
    Use this Rewards Code below when registering your EVGA products. 
    (Make sure to upload your invoice.)
    #8
    RainStryke
    The Advocate
    • Total Posts : 15090
    • Reward points : 0
    • Joined: 2007/07/19 19:26:55
    • Location: Kansas
    • Status: offline
    • Ribbons : 43
    Re: Weakness in Intel chips lets researchers steal encrypted SSH keystrokes 2019/09/11 16:09:44 (permalink)
    GTXJackBauer
    ty_ger07
    GTXJackBauer
    Why is everyone freaking out?  We don't patch our games and or windows?  This is how the future will be like.  Military hardware will get updates too.  

    Intel patches keep making their hardware slower and slower while AMD is repeatedly unaffected. Like in another thread, you said "false advertising". This is similar. Performance keeps dropping from what was expected. And, how many similar Intel exploits within the last year are we up to?



    I agree with u on that front.  They should comp us for the degradation.  




    For real, i'm still really salty that my i7 7820X is vulnerable to a few things related to hyper-threading and the fix is a patch that you have to load separately. I attempted to patch it, but Asus didn't make the installation easy to understand. After a few hours, I just gave up and turned off Hyper-threading. 

    Main PC|CPU: Intel i7 9700K@5.1GHz|CPU Cooler:EVGA CLC280|Motherboard:Gigabyte Aorus Z390 Master|GPU:ASUS STRIX RTX 2080|Monitor:Dell S2716DG|RAM:32GB G.Skill Trident Z 4266MHz CL17|PSU:EVGA G5 750w|SSD:Samsung EVO 970 1TB|Case:Andees Crystal Cube

    2nd/Loaner|CPU: Intel i7 7820X|CPU Cooler:Noctua NH-U14S|Motherboard:Asus STRIX X299-E Gaming|GPU:Power Color Red Dragon RX 5700XT|Monitor:Acer CB271HU|RAM:32GB Corsair Vengeance RGB 3600MHz CL18|PSU:Seasonic X-1250|SSD:Crucial MX100 512GB|Case:Corsair 220T RGB Air Flow
     
    EVGA Affiliate Code: S27QNQME0X
    Associate Code: PS5FLYJJI3DTQO8
    #9
    Jump to:
  • Back to Mobile