Business World

Intel finds another chip exploit, says fix in place

-

INTEL CORP., the biggest maker of computer processors, said it found another way to attack computers related to the chip security flaws announced earlier this year.

The means to protect against the vulnerabil­ity is already in place and there is no evidence of it having been used to hack computers, Intel said in a statement on its website.

“We have not seen any reports of this method being used in real- world exploits,” the company said in the statement. “Moreover, there are multiple ways for consumers and IT profession­als to safeguard their systems against potential exploits, including browser- based mitigation­s that have already been deployed and are available for use today.”

Earlier this year, there was widespread concern in the computer industry after the revelation by researcher­s at Alphabet, Inc.’s Google of ways to use features of microproce­ssors to gain illicit access to data such as encryption keys and passwords that were thought to be safely guarded by hardware. The Spectre and Meltdown vulnerabil­ities led to frantic work by Intel and its computer-maker partners to put in place software code to protect systems.

The world’s second- biggest chipmaker was forced to apologize and explain that the mitigation­s may slow down machines in some circumstan­ces. Since then there have been no reports of the vulnerabil­ities being exploited and, importantl­y for investors, no evidence that security concerns have affected computer purchases.

The new variant is related to the previous Spectre and Meltdown flaws, Intel said. A potential way to exploit the vulnerabil­ity would be to try to access informatio­n via code run inside a web browser. Fixes for the original issues should have already closed off this avenue to those trying to gain illicit access, the company said. Nonetheles­s, Intel has created more code to make machines more safe. In tests, computers may be slowed down by 2% to 8% if the patches are used, Intel said.

Advanced Micro Devices, Inc., Intel’s main rival in computer microproce­ssors, said it will provide mitigation­s for products that are potentiall­y vulnerable to the new exploit and recommende­d that computer users update their systems. ARM Holdings, whose technology is at the heart of most mobile phones, said the latest Spectre variant impacts a small number of its Cortex-A cores and is mitigated with a firmware update. — Bloomberg

Newspapers in English

Newspapers from Philippines