3891 views|7 replies

623

Posts

0

Resources
The OP
 

There is no best data security, only stronger [Copy link]

This post is from Embedded System

Latest reply

I saw a new term again. I quickly looked up KPTI, and it turns out to be: Kernel page table isolation Ah, it may not be very useful to experienced security professionals, but it is very profound to newbies.   Details Published on 2024-5-6 09:19

6027

Posts

6

Resources
2
 

I feel like this side channel attack can solve all "problems", but it needs to be done by professionals.

This post is from Embedded System

Comments

I think so too. The equipment that can collect electromagnetic radiation is very professional. It can also reduce noise, separate, and match and restore these data. This technical strength is also national-level.  Details Published on 2024-5-5 10:15
 
Personal signature

在爱好的道路上不断前进,在生活的迷雾中播撒光引

 

1110

Posts

1

Resources
3
 

User state and kernel state are the contents of the operating system, right? Data security should be a concept at another level, right?

How come the host confused me?

This post is from Embedded System

Comments

Understand it this way: Due to the protection of the kernel, your program cannot access the memory data of other programs, because under the management of MMU, the kernel does not allow you to access the content of programs other than yours. However, the kernel state can see the content of all user programs. If you use an attack, you can see the data content of other programs in the kernel state.  Details Published on 2024-5-5 10:17
 
 
 

623

Posts

0

Resources
4
 
Qintianqintian0303 posted on 2024-5-2 19:42 I feel that this side channel attack can solve all "problems", but this also requires professionals to do it

I think so too. Equipment that can collect electromagnetic radiation is very professional.

It can also reduce noise, separate, and then match and restore these data. This technical strength is also national-level.

This post is from Embedded System
 
 
 

623

Posts

0

Resources
5
 
hellokitty_bean posted on 2024-5-2 20:43 User state and kernel state are the contents of the operating system, right? Data security should be a different level of reference, right? How come the original poster is confused?

Understand it this way: Due to the protection of the kernel, your program cannot access the memory data of other programs, because under the management of MMU, the kernel does not allow you to access the content of programs other than yours. However, the kernel state can see the content of all user programs. If you use an attack to see the data content of other programs in the kernel state, then you can "control" other programs.

This post is from Embedded System

Comments

Hmmmm... This is a bargain... Attacking from this level is really awesome  Details Published on 2024-5-5 21:22
 
 
 

1110

Posts

1

Resources
6
 
jobszheng5 posted on 2024-5-5 10:17 Understand it this way: Due to the protection of the kernel, your program cannot access the memory data of other programs, because under the management of MMU, the kernel does not allow you to access non-...

Hmmmm... This one is a bargain...

Attacking from this level is really awesome.

This post is from Embedded System

Comments

I looked at the KPTI technology later. Now the kernel has plugged this vulnerability, but it sounds so advanced.  Details Published on 2024-5-5 22:10
 
 
 

623

Posts

0

Resources
7
 
hellokitty_bean posted on 2024-5-5 21:22 Hmmmm... This is a bargain... Attacking from this level is really awesome

After looking at the KPTI technology, the kernel has now blocked this vulnerability.

But it sounds so high-end.

This post is from Embedded System
 
 
 

1110

Posts

1

Resources
8
 

I saw a new term again.
I quickly looked up KPTI, and it turns out to be: Kernel page table isolation

Ah, it may not be very useful to experienced security professionals, but it is very profound to newbies.

This post is from Embedded System
 
 
 

Guess Your Favourite
Find a datasheet?

EEWorld Datasheet Technical Support

EEWorld
subscription
account

EEWorld
service
account

Automotive
development
circle

Copyright © 2005-2024 EEWORLD.com.cn, Inc. All rights reserved 京B2-20211791 京ICP备10001474号-1 电信业务审批[2006]字第258号函 京公网安备 11010802033920号
快速回复 返回顶部 Return list