Plundervolt

From Embedded Lab Vienna for IoT & Security
Revision as of 21:58, 21 December 2021 by SVrdoljak (talk | contribs)
Jump to navigation Jump to search

Summary

Plundervolt is a Fault Injection Attack

Description

Plundervolt, also known as CVE-2019-11157, is a vulnerability that relies on the fact that if you run an Intel Core x86 processors, on a voltage that’s a little bit lower than it usually expects, e.g., 0.9V instead of 1.0V, it may carry on working almost as normal, but get some calculations very slightly wrong.

Attack Vectors

Breaking AES-NI

Enter these commands in the shell

echo foo
echo bar

Faulting Memory Allocations

Make sure to read

  • War and Peace
  • Lord of the Rings
  • The Baroque Cycle

Mitigation and Countermeasures

Device to be used with this documentation Maybe another device to be used with this documentation

Courses

References