Популярное

Музыка Кино и Анимация Автомобили Животные Спорт Путешествия Игры Юмор

Интересные видео

2025 Сериалы Трейлеры Новости Как сделать Видеоуроки Diy своими руками

Топ запросов

смотреть а4 schoolboy runaway турецкий сериал смотреть мультфильмы эдисон
dTub
Скачать

Bypassing ARM's Memory Tagging Extension with a Side-Channel Attack

Автор: Black Hat

Загружено: 2025-01-28

Просмотров: 1634

Описание:

ARM Memory Tagging Extension (MTE) is a new hardware extension introduced in ARMv8.5-A architecture designed to detect memory corruption. Compared to previous mitigation techniques such as DEP, ASLR, and CFI, MTE can detect the root cause of memory corruption attacks. For this reason, MTE is considered the most promising path forward for improving C/C++ software security by many security experts, since its first adoption with Pixel 8 in October 2023.

In this talk, we show that despite high hopes, MTE is not yet the silver bullet for eliminating memory corruption attacks. Specifically, we introduce new exploitation techniques that leak the MTE tags through speculative execution. We demonstrate that the MTE-based protection in Google Chrome and the Linux kernel can be bypassed.

Our findings suggest that while MTE represents a significant advancement in memory safety, it is not yet safe against side-channel attacks, and further improvements are necessary to secure systems effectively.

By:
Juhee Kim | Ph.D. Student, Seoul National University
Jinbum Park | Samsung Research
Sihyeon Roh | Seoul National University
Jaeyoung Chung | Seoul National University
Youngjoo Lee | Seoul National University
Taesoo Kim | Samsung Research and Georgia Institute of Technology
Byoungyoung Lee | Seoul National University

Full Abstract and Presentation Materials:
https://www.blackhat.com/us-24/briefi...

Bypassing ARM's Memory Tagging Extension with a Side-Channel Attack

Поделиться в:

Доступные форматы для скачивания:

Скачать видео mp4

  • Информация по загрузке:

Скачать аудио mp3

Похожие видео

Mitigating Linux kernel memory corruptions with Arm Memory Tagging | Linux Security Summit 2021

Mitigating Linux kernel memory corruptions with Arm Memory Tagging | Linux Security Summit 2021

Bytecode Jiu-Jitsu: Choking Interpreters to Force Execution of Malicious Bytecode

Bytecode Jiu-Jitsu: Choking Interpreters to Force Execution of Malicious Bytecode

LLC 2024 -  The Memory Tagging Extension MTE for ARM AArch64, by Linus Walleij

LLC 2024 - The Memory Tagging Extension MTE for ARM AArch64, by Linus Walleij

Side Channel Timing Attack Demonstration

Side Channel Timing Attack Demonstration

15 Ways to Break Your Copilot

15 Ways to Break Your Copilot

Introduction to Threat Hunting Using Garuda Framework - Hunting Living off the land attack (LoLbin)

Introduction to Threat Hunting Using Garuda Framework - Hunting Living off the land attack (LoLbin)

Константин Серебряный — Ищем баги в продакшене всем миром: GWP-ASan и что дальше

Константин Серебряный — Ищем баги в продакшене всем миром: GWP-ASan и что дальше

Я в опасности

Я в опасности

Attack on Titan M, Reloaded: Vulnerability Research on a Modern Security Chip

Attack on Titan M, Reloaded: Vulnerability Research on a Modern Security Chip

C++ Russia 2020 Piter

C++ Russia 2020 Piter

iPhone 17 — первый неубиваемый телефон?

iPhone 17 — первый неубиваемый телефон?

researchers find an unfixable bug in EVERY ARM cpu

researchers find an unfixable bug in EVERY ARM cpu

Memory Tagging for the kernel — Tag-Based KASAN | Android Security Symposium 2020

Memory Tagging for the kernel — Tag-Based KASAN | Android Security Symposium 2020

Lost in Translation: Exploiting Unicode Normalization

Lost in Translation: Exploiting Unicode Normalization

iOS Kernel PAC, One Year Later

iOS Kernel PAC, One Year Later

ARM Assembly: Lesson 1 (MOV, Exit Syscall)

ARM Assembly: Lesson 1 (MOV, Exit Syscall)

What is Memory-Tagging Extension (MTE)?

What is Memory-Tagging Extension (MTE)?

120 МИЛЛИАРДОВ: КТО и Зачем создал БИТКОИН? Тайна Сатоши Накамото

120 МИЛЛИАРДОВ: КТО и Зачем создал БИТКОИН? Тайна Сатоши Накамото

The Windows 11 Disaster That's Killing Microsoft

The Windows 11 Disaster That's Killing Microsoft

Improving Memory Safety in Android 12 Using MTE

Improving Memory Safety in Android 12 Using MTE

© 2025 dtub. Все права защищены.



  • Контакты
  • О нас
  • Политика конфиденциальности



Контакты для правообладателей: infodtube@gmail.com