Silloway Networks
  • Home
    • Services >
      • Compliance
    • About >
      • Testimonials
  • Security
    • Firewall
    • Compliance
  • Backup
  • M365
    • TEAMS >
      • Teams Training Video
  • VOIP
  • Contact
  • Payments
  • Blog
  • Home
    • Services >
      • Compliance
    • About >
      • Testimonials
  • Security
    • Firewall
    • Compliance
  • Backup
  • M365
    • TEAMS >
      • Teams Training Video
  • VOIP
  • Contact
  • Payments
  • Blog

Meltdown and Spectre Vulnerabilities

1/10/2018

 
Am I affected?
Both Spectre and Meltdown were discovered last year, but was only recently disclosed to the public. Both vulnerabilities exploit a processing technique, known as speculative execution, that went mainstream in processors around 15-20 years ago, so basically every CPU made in the last 20 years is vulnerable.

What might happen?
These vulnerabilities allow attackers to view information stored on the processor itself. Normally this is not allowed due to security on the Operating System and the hardware itself to keep secret things secret. These vulnerabilities bypass this to allow seeing things such as passwords and encryption keys, or in the case of cloud environments, potentially data on someone else’s server if they share resources.

Which Operating Systems are affected?
Because these are hardware vulnerabilities, the overlying operating system doesn’t matter. Windows, IOS, Android, and Linux are all affected. There are some patches being released that help plug the holes that can be exploited, but the true fix will need to come by re-designing the CPU from the ground up.

Are Spectre and Meltdown different?
Meltdown is a vulnerability that breaks down the security walls between an application and the operating system. This primarily affects Intel and Apple CPUs. AMD CPUs are not affects. This vulnerability is the easier of the two to fix and there are patches released or in the works to fix it. The downside to the fix is that it will slow the performance of the CPU. So far, the degradation of performance has not been noticed in normal office use.
Spectre is a vulnerability that breaks down the security walls between the applications themselves. This affects all CPUs made in the last 20 years, including AMD. The positive side is that is it VERY hard to exploit.

What should I do?
The best protection is to make sure you don’t turn off or ignore updates. Microsoft has rolled out updates to Windows 10 on 1/3/18. Windows 7 and Windows 8 will have patches released on “Patch Tuesday” on 1/9/18. Apple has released patches for iOS 11.2, macOS 10.13.2, and tvOS 11.2.

    Author

    Silloway Support Team

    Archives

    August 2021
    June 2021
    March 2021
    June 2020
    May 2020
    April 2020
    March 2020
    September 2018
    August 2018
    July 2018
    January 2018
    December 2016
    June 2016
    May 2016
    April 2016
    March 2016
    December 2015

    Categories

    All
    Gmail
    Gmail Won't Get To My Inbox
    Hp Battery Recall
    Hp Battery Replacement
    Meltdown
    Office 365
    Outlook
    Phishing
    Productivity
    Revert To Windows 7
    Security
    Smtp Blacklist
    Spectre
    Teams
    Windows 10
    Wireless

    RSS Feed

Call today - 802 282-4255

​Silloway Networks offers Enterprise level support to Small and Medium Businesses in Rutland, Addison, Windsor and Bennington Counties. Employing highly-skilled technicians and developing partnerships with best-of-breed technology providers allows Silloway Networks to provide personalized technology solutions to enhance the operation of your business.
Website by Silloway Networks