Click here to Skip to main content
14,302,714 members

The Insider News

   

The Insider News is for breaking IT and Software development news. Post your news, your alerts and your inside scoops. This is an IT news-only forum - all off-topic, non-news posts will be removed. If you wish to ask a programming question please post it here.

Get The Daily Insider direct to your mailbox every day. Subscribe now!

 
GeneralRe: The rise of Kotlin Pin
#realJSOP11-Jun-19 8:31
mve#realJSOP11-Jun-19 8:31 
GeneralRe: The rise of Kotlin Pin
Kent Sharkey11-Jun-19 8:41
staffKent Sharkey11-Jun-19 8:41 
GeneralRe: The rise of Kotlin Pin
MarkTJohnson11-Jun-19 9:06
professionalMarkTJohnson11-Jun-19 9:06 
GeneralRe: The rise of Kotlin Pin
Kent Sharkey11-Jun-19 9:19
staffKent Sharkey11-Jun-19 9:19 
GeneralRe: The rise of Kotlin Pin
raddevus11-Jun-19 10:11
mvaraddevus11-Jun-19 10:11 
NewsRAMBleed attack can steal sensitive data from computer memory Pin
Kent Sharkey11-Jun-19 8:01
staffKent Sharkey11-Jun-19 8:01 
GeneralRe: RAMBleed attack can steal sensitive data from computer memory Pin
Joe Woodbury11-Jun-19 9:48
professionalJoe Woodbury11-Jun-19 9:48 
GeneralRe: RAMBleed attack can steal sensitive data from computer memory Pin
Deflinek11-Jun-19 9:51
memberDeflinek11-Jun-19 9:51 
The success measured a rate of 0.3 bits per second and an accuracy of 82%. To obtain the full data, the researchers used a variant of the Heninger-Shacham algorithm that can recover RSA keys from partial information.

A method to reduce the risk of this type of read-side attack is to flush encryption keys from memory immediately after using them. This lowers the chances of learning the secret data because RAMBleed needs it to stay in memory for at least one refresh interval, which is 64ms by default.

I'm not saying that this vulnerability is not real but the article is a bit "click-baity" at least.

Yes, they were able to read memory from out of process space, but if an attacker can get access to the server with enough knowledge of memory mapping and ability to run own programs in address space physically aligned to victim's for so long that 0.3 bits per second will hopefully get them enough portion of the key to figure out the rest… I would say there are definitely easier ways to compromise the server.
--
"My software never has bugs. It just develops random features."

GeneralRe: RAMBleed attack can steal sensitive data from computer memory Pin
Rick York12-Jun-19 5:01
mveRick York12-Jun-19 5:01 
GeneralRe: RAMBleed attack can steal sensitive data from computer memory Pin
maze311-Jun-19 23:35
professionalmaze311-Jun-19 23:35 
NewsG20 countries agree to close tax loopholes for tech companies Pin
Kent Sharkey10-Jun-19 10:46
staffKent Sharkey10-Jun-19 10:46 
GeneralRe: G20 countries agree to close tax loopholes for tech companies Pin
Joe Woodbury10-Jun-19 16:00
professionalJoe Woodbury10-Jun-19 16:00 
NewsMicrosoft Power Platform update aims to put AI in reach of business users Pin
Kent Sharkey10-Jun-19 10:46
staffKent Sharkey10-Jun-19 10:46 
GeneralRe: Microsoft Power Platform update aims to put AI in reach of business users Pin
Mark_Wallace12-Jun-19 7:33
memberMark_Wallace12-Jun-19 7:33 
NewsTangled in .NET: Will 5.0 really unify Microsoft's development stack? Pin
Kent Sharkey10-Jun-19 10:31
staffKent Sharkey10-Jun-19 10:31 
RantRe: Tangled in .NET: Will 5.0 really unify Microsoft's development stack? Pin
Richard Deeming11-Jun-19 1:32
mveRichard Deeming11-Jun-19 1:32 
GeneralRe: Tangled in .NET: Will 5.0 really unify Microsoft's development stack? Pin
#realJSOP11-Jun-19 3:15
mve#realJSOP11-Jun-19 3:15 
NewsBlender is free software Pin
Kent Sharkey10-Jun-19 9:01
staffKent Sharkey10-Jun-19 9:01 
GeneralRe: Blender is free software Pin
Mark_Wallace10-Jun-19 17:08
memberMark_Wallace10-Jun-19 17:08 
JokeRe: Blender is free software Pin
Richard Deeming11-Jun-19 1:34
mveRichard Deeming11-Jun-19 1:34 
NewsMozilla will reportedly launch a paid version of Firefox this fall Pin
Kent Sharkey10-Jun-19 9:01
staffKent Sharkey10-Jun-19 9:01 
GeneralRe: Mozilla will reportedly launch a paid version of Firefox this fall Pin
W Balboos11-Jun-19 1:20
mveW Balboos11-Jun-19 1:20 
GeneralRe: Mozilla will reportedly launch a paid version of Firefox this fall Pin
Joe Woodbury11-Jun-19 9:50
professionalJoe Woodbury11-Jun-19 9:50 
GeneralRe: Mozilla will reportedly launch a paid version of Firefox this fall Pin
Mark_Wallace12-Jun-19 7:35
memberMark_Wallace12-Jun-19 7:35 
NewsGaming doesn't make you fat, says new study Pin
Kent Sharkey10-Jun-19 7:01
staffKent Sharkey10-Jun-19 7:01 

General General    News News    Suggestion Suggestion    Question Question    Bug Bug    Answer Answer    Joke Joke    Praise Praise    Rant Rant    Admin Admin   

Use Ctrl+Left/Right to switch messages, Ctrl+Up/Down to switch threads, Ctrl+Shift+Left/Right to switch pages.