Education Research Current About VU Amsterdam NL
Bachelor's programmes Master's programmes VU for Professionals
Exchange programme VU Amsterdam Summer School Honours Programme Dutch language courses (NT2) Semester in Amsterdam
PhD at VU Amsterdam Featured research Prizes and distinctions
Interdisciplinary research institutes Scientists of VU Amsterdam Research Impact Support Portal Create impact with your research
News Events calendar Moving towards a healthier future
VU UPDATE: Situation in Israel and the Palestinian regions Culture at VU Amsterdam
Practical matters Mission, core values and vision Entrepreneurship on VU Campus
Governance of VU Amsterdam Valorisation and impact Partnering with VU Amsterdam VU Alumni Community Take a look at our vacancies!
Sorry! De informatie die je zoekt, is enkel beschikbaar in het Engels.
This programme is saved in My Study Choice.
Something went wrong with processing the request.
Something went wrong with processing the request.

Research reveals major security flaw in Intel processors

In the information-driven world in which we live, computer systems and networks have become increasingly important. As a result, the security of these systems is also becoming increasingly important.

Nearly all stored information is sensitive, such as personal data or passwords, and needs to be protected. It is not only the software that could contain vulnerabilities; the hardware also sometimes has flaws that malicious parties can exploit. Herbert Bos, along with the Systems and Network Security Group (VUSec) of VU Amsterdam, shows that this is the case with memory chips from Intel. 

The vulnerability of the Intel chips enables an attacker to 'listen in' on what the processor is doing with data from other users - in other programs, on other virtual machines, in the operating system and even in the highly-secured security enclaves that Intel has been supporting for several years. The only thing an attacker needs is a program that runs on the owner’s device. On a PC, programs of an unknown origin are constantly running, for example, when you visit a website that contains Javascript (which is almost every website nowadays). 

The researchers discovered this vulnerability in September 2018. They coordinated the disclosure of this to Intel, so that the company could release a security patch in time. This was done in May 2019. In November 2019, the researchers revealed that the patch worked only partially, contrary to Intel's promise.

See also

About this research

Lead researcher

Research department

Profile theme

  • Connected World

Quick links

Homepage VU Amsterdam Culture at VU Amsterdam University Library Dashboard

Study

Academic calendar Study Guide Timetable Canvas

Featured

Donate to the VU Fund VU Magazine Ad Valvas Digital accessibility

About VU Amsterdam

Contact with VU Amsterdam Take a look at our vacancies! Faculties VU Amsterdam Divisions VU Amsterdam
Privacy Disclaimer Safety Web Colophon Cookie settings Web Archive

Copyright © VU