Entire world of computing and tech possibly doomed

Moderator: Jere

Post Reply
User avatar
Kargath
Posts: 10584
Joined: Wed Jul 25, 2001 1:00 am

Entire world of computing and tech possibly doomed

Post by Kargath » Thu Jan 04, 2018 3:56 am

https://www.theregister.co.uk/2018/01/0 ... sign_flaw/

So nearly every processor made in the last 20 years has an security flaw that at *best* will make for a ~30-60% performance hit to cover, and and worst is completely unfixable and may allow any web page with Javascript. to read data sitting somewhere in your memory.

FUN
Why is it drug addicts and computer afficionados are both called users?
-Clifford Stoll

User avatar
е и ժ е я
Supermod
Posts: 41031
Joined: Sun Aug 18, 2002 1:00 am
Location: Enough. My tilde has tired and shall take its leave of you.
Contact:

Re: Entire world of computing and tech possibly doomed

Post by е и ժ е я » Thu Jan 04, 2018 5:17 am

I'd actually wondered briefly if this would be possible at some point. Nasty exploit.
I muttered 'light as a board, stiff as a feather' for 2 days straight and now I've ascended, ;aughing at olympus and zeus is crying

User avatar
I am nobody
Moderator
Posts: 12505
Joined: Tue Aug 07, 2007 7:26 pm
Location: -89.97814998,-42.2333493

Re: Entire world of computing and tech possibly doomed

Post by I am nobody » Thu Jan 04, 2018 7:21 am

It's a good day to be on AMD.

User avatar
Kargath
Posts: 10584
Joined: Wed Jul 25, 2001 1:00 am

Re: Entire world of computing and tech possibly doomed

Post by Kargath » Thu Jan 04, 2018 8:07 am

I am nobody wrote:
Thu Jan 04, 2018 7:21 am
It's a good day to be on AMD.
More a slightly-less-bad one.
The SPECTRE attack still affects AMD chips.
https://spectreattack.com/
Why is it drug addicts and computer afficionados are both called users?
-Clifford Stoll

User avatar
CaptHayfever
Supermod
Posts: 36973
Joined: Tue Jul 16, 2002 1:00 am
Location: (n) - the place where I am
Contact:

Re: Entire world of computing and tech possibly doomed

Post by CaptHayfever » Thu Jan 04, 2018 6:11 pm

Couldn't we just find a workaround to bypass Javascript the way we've basically bypassed Flash?

And remember, "I'm-a Luigi, number one!"

User avatar
I am nobody
Moderator
Posts: 12505
Joined: Tue Aug 07, 2007 7:26 pm
Location: -89.97814998,-42.2333493

Re: Entire world of computing and tech possibly doomed

Post by I am nobody » Thu Jan 04, 2018 6:27 pm

Creating a JS workaround that didn't break half the internet and that somehow stopped a hardware exploit would be a pretty monumental undertaking.

User avatar
Kargath
Posts: 10584
Joined: Wed Jul 25, 2001 1:00 am

Re: Entire world of computing and tech possibly doomed

Post by Kargath » Fri Jan 05, 2018 3:24 am

It's not really a Javascript vulnerability - JS is just the most obvious 'foreign thing runs on your comp' that is out there. As soon as something else can execute on your computer, that too makes your comp vulnerable. It's that bad.
Why is it drug addicts and computer afficionados are both called users?
-Clifford Stoll

User avatar
CaptHayfever
Supermod
Posts: 36973
Joined: Tue Jul 16, 2002 1:00 am
Location: (n) - the place where I am
Contact:

Re: Entire world of computing and tech possibly doomed

Post by CaptHayfever » Sat Jan 06, 2018 12:11 am

Welp.
My laptop is pushing 10 years old anyway. If they can develop new chips soon that don't have the flaw, I'll be on the market.

And remember, "I'm-a Luigi, number one!"

User avatar
Jere
Moderator
Posts: 5533
Joined: Wed May 28, 2008 2:25 pm
Location: South Lapland

Re: Entire world of computing and tech possibly doomed

Post by Jere » Wed Jan 10, 2018 6:33 pm

It's dodgy and as sever as it is i haven't had the time to look into the issue to see what it is and what it does but as they say in the article:
"At best, the vulnerability could be leveraged by malware and hackers to more easily exploit other security bugs"
I kind of guessed this was a possibility since i saw this video last summer
https://www.youtube.com/watch?v=KrksBdWcZgQ

It's obscure and a bit weird so i speculate that nothing major for the general user should be in danger but companies should double check stuff atleast.

what is more interesting for general users atleast for the foreseable future is the anitivirus protection.
https://doublepulsar.com/important-info ... 52ba0292ec

Post Reply

Return to “Computer Gaming & Tech”