2018-02-09

Samples exploiting Meltdown and Spectre Found

  Meltdown
Spectre  
So, it begins. Low functionality snips and samples which utilize Meltdown and Spectre have been found.

It seems that google's publication of findings for both CPU vulnerabilities ended up being roadmaps for this malware creation.

Stressing that the 139 samples can't do much ... yet; the potential for improvement and subsequent impact on the existing servers and workstations of the world is quite likely.

Proof of concept code such as the bulk of these new findings aren't designed to deliver a payload or really "do" anything other than reveal what may be done.

Linus Torvalds has excoriated Intel as a producer of "garbage" fixes in this infant stage of the malware. His tirade was both specific and very entertaining had it not been a spooky view into the future as well.

Torvalds has been criticized for his handling of the issues he has with Meltdown in particular. However, I for one don't pull any punches, either and feel that severity he communicated was not only appropriate, but well deserved.