Zitat"Hyper-Threading, as currently implemented on Intel Pentium Extreme Edition, Pentium 4, Mobile Pentium 4, and Xeon processors, suffers from a http://www.daemonology.net/hyperthreading-considered-harmful/serious security flaw. This flaw permits local information disclosure, including allowing an unprivileged user to steal an RSA private key being used on the same machine. Administrators of multi-user systems are strongly advised to take action to disable Hyper-Threading immediately. I will be presenting this attack at http://www.daemonology.net/hyperthreading-considered-harmful/http://www.bsdcan.org/2005/ BSDCan 2005http://www.daemonology.net/hyperthreading-considered-harmful/http://www.bsdcan.org/2005/ at 10:00 AM EDT on May 13th, and at the conclusion of my talk I will also releasing a paper describing the attack and possible mitigation strategies."
Quelle: http://it.slashdot.org/it/05/05/13/05…tid=172&tid=118
kurze Zusammenfassung:
So wie Hyper-Threading momentan auf Intel Rechnern implementiert ist, gibt es eine Möglichkeit für unpriviligierte User z.B. private RSA Schlüssel zuergattern.
=> kenn einige Admins die gerade ihrem Chef klar machen, dass sie jetzt auf allen Rechnern in der Firma HT deaktivieren.
Cu Selur