Intel releases updates to plug TPM-FAIL flaws, foil ZombieLoad v2 attacks - Help Net Security

Intel releases updates to plug TPM-FAIL flaws, foil ZombieLoad v2 attacks - Help Net Security

Intel’s Patch Tuesday releases are rarely so salient as those pushed out this month: the semiconductor chip manufacturer has patched a slew of high-profile vulnerabilities in their chips and drivers.



TPM-FAIL


TPM-FAIL is a name given to vulnerabilities found in some Intel’s firmware-based TPM (fTPM) and STMicroelectronics’ TPM chipsets, discovered by Ahmad “Daniel” Moghimi and Berk Sunar from Worcester Polytechnic Institute, Thomas Eisenbarth from University of Lübeck and Nadia Heninger from University of California at San Diego.


TPM-FAIL flaws could allow attackers to recover long-term private keys used to generate Elliptic Curve Digital Signature Algorithm (ECDSA) signatures and use them to forge digital signatures.


STMicroelectronics has released firmware updates, and so has ..

Support the originator by clicking the read the rest link below.