Cache Attacks Enable Bulk Key Recovery on the Cloud
eprint.iacr.org
Cache Attacks Enable Bulk Key Recovery on the Cloud
1–10 of 19 posts
Re: Cache Attacks Enable Bulk Key Recovery on the Cloud
#2As +Andreas Schou said in his share, "Okay. That's it. I give up. Security is impossible."
Re: Cache Attacks Enable Bulk Key Recovery on the Cloud
#3Re: Cache Attacks Enable Bulk Key Recovery on the Cloud
#4https://plus.google.com/+YonatanZunger/posts/ayXVWrFpQus As +Andreas Schou said in his share, "Okay. That's it. I give up. Security is impossible."
Re: Cache Attacks Enable Bulk Key Recovery on the Cloud
#5https://plus.google.com/+YonatanZunger/posts/ayXVWrFpQus As +Andreas Schou said in his share, "Okay. That's it. I give up. Security is impossible."
Re: Cache Attacks Enable Bulk Key Recovery on the Cloud
#6Can't this be prevented by pinning each VM to different cores?
Re: Cache Attacks Enable Bulk Key Recovery on the Cloud
#7https://plus.google.com/+YonatanZunger/posts/ayXVWrFpQus As +Andreas Schou said in his share, "Okay. That's it. I give up. Security is impossible."
To clarify, your link talks about a different, unrelated attack, right?
Re: Cache Attacks Enable Bulk Key Recovery on the Cloud
#8Re: Cache Attacks Enable Bulk Key Recovery on the Cloud
#9It's very hard with posts like this to understand the true reach of the problem: is this like having ssh with "password" as the password or is it something much less dangeroues. Is this something that could be exploited without Amazon team messing with the hypervisor providing your VM or something a third party can exploit? If this is a problem with Amazon then I think it's not a real problem for many people: it's in…
Re: Cache Attacks Enable Bulk Key Recovery on the Cloud
#10Somehow I wonder about that. Spear phishing is very effective and the software itself isn't exactly perfect either. Either very few people are even trying, or something does not add up.
[1] https://www.usenix.org/legacy/events/sec09/tech/full_papers/... "We implemented these side-channel attacks and our best practical attack fully recovered 95% of the keystrokes of a PS/2 keyboard at a distance up to 20 meters, even through walls. We tested 12 different keyboard models bought between 2001 and 2008 (PS/2, USB, wireless and laptop)."