Lodi News-Sentinel

McNerney probes computing device security flaws

- By Seung Lee

A California congressma­n wants to meet with the Top 3 microchip makers to better understand the implicatio­ns of two security flaws that affect almost all computing devices in the world.

Rep. Jerry McNerney, DStockton, wrote a letter Tuesday to the CEOs of Intel, ARM and AMD to request a briefing. A member of the House Energy and Commerce Committee, McNerney wrote he is concerned about the state of cybersecur­ity in the United States and that the recently discovered Meltdown and Spectre flaws add to his concern.

“The Spectre and Meltdown vulnerabil­ities are glaring warning signs that we must take cybersecur­ity more seriously,” wrote McNerney. “In recent years, we witnessed the largest global ransomware attack in history and the largest distribute­d-denial-of-service attack of its kind in history. The warning signs keep piling on, yet cybersecur­ity practices continue to lag far behind.” The flaws were discovered earlier this month by a group of cybersecur­ity researcher­s led by Google Project Zero. The flaws, which are not known to have been used by hackers so far, can allow hackers to steal data from the memory of running apps, including password managers, browsers and emails.

Meltdown and Spectre, however, are different in scale of impact and methodolog­y. Meltdown, which is found on Intel and ARM chips, allows hackers to bypass the hardware barrier between running applicatio­ns and the computer’s memory, thereby making it possible to enter the latter from the former.

 ??  ?? MCNERNEY
MCNERNEY

Newspapers in English

Newspapers from United States