New AMD Side Channel Attacks Discovered, Impacts Zen Architecture (AMD Responds)

(Image credit: Tom's Hardware)

Update #3 3/9/2020 7:20am PT: We've moved the two previous updates to the bottom of the article, and added the latest statement from AMD. A summation: 

AMD responded to our queries with an advisory the company posted to its website. This advisory does not point to any mitigations for the attack in question, merely citing other mitigated speculative executions that were used as a vehicle to attack the L1D cache predictor. AMD's posting also lists general advice for protecting against the incredibly large family of side channel attacks, but there aren't any specific mention of firmware patches for the Take A Way vulnerabilities. 

Paul Alcorn
Editor-in-Chief

Paul Alcorn is the Editor-in-Chief for Tom's Hardware US. He also writes news and reviews on CPUs, storage, and enterprise hardware.

  • USAFRet
    For those of you who thought Intel was the only line vulnerable...
    Reply
  • valeman2012
    USAFRet said:
    For those of you who thought Intel was the only line vulnerable...
    These people were hyped to see that. It really really disappointing that the discovery was more than 90 days ago and yet no attempt to resolve 2 very major security flaw on AMD CPU.
    Reply
  • InvalidError
    USAFRet said:
    For those of you who thought Intel was the only line vulnerable...
    As I wrote back when the first bugs in Intel's chips were discovered: only a matter of time until AMD-specific bugs are found, AMD just wasn't getting as much attention previously as the minority player.
    Reply
  • Deicidium369
    There are ZERO real world exploits for any of the vulnerabilities - they are lab tests and are not exploitable in the wild... it's not like it's a piece of malware. This goes for Intel and AMD. If you allow someone unfettered physical access to your server in the real world - you need to look for another job.

    More and more of these vulnerabilities will be coming for AMD - until now they were a novel niche CPU with no real installed base - if you aren't looking, you aren't finding. I would be more worried about the rowhammer type attacks - those can be exploited rather easily.
    Reply
  • valeman2012
    InvalidError said:
    As I wrote back when the first bugs in Intel's chips were discovered: only a matter of time until AMD-specific bugs are found, AMD just wasn't getting as much attention previously as the minority player.
    Deicidium369 said:
    There are ZERO real world exploits for any of the vulnerabilities - they are lab tests and are not exploitable in the wild... it's not like it's a piece of malware. This goes for Intel and AMD. If you allow someone unfettered physical access to your server in the real world - you need to look for another job.

    More and more of these vulnerabilities will be coming for AMD - until now they were a novel niche CPU with no real installed base - if you aren't looking, you aren't finding. I would be more worried about the rowhammer type attacks - those can be exploited rather easily.
    Its alarming and i betting these amd individuals would say "this discovery was paid by Intel" on community forums in order to cover their major disappointment of being wrong.
    Reply
  • ingtar33
    USAFRet said:
    For those of you who thought Intel was the only line vulnerable...
    this is a specter style attack, which means it requires physical access to the computer, adjustments to the bios and administrative passwords to work.

    In short it's a nothing burger. that's not to say AMD isn't vulnerable to security risks, but this one is a whole lot of nothing. because if someone has that much access to the computer, they don't need a virus.
    Reply
  • USAFRet
    ingtar33 said:
    this is a specter style attack, which means it requires physical access to the computer, adjustments to the bios and administrative passwords to work.

    In short it's a nothing burger. that's not to say AMD isn't vulnerable to security risks, but this one is a whole lot of nothing. because if someone has that much access to the computer, they don't need a virus.
    And how many comments have we seen in the last couple of years with:
    "I'll never buy Intel again because of these vulnerabilities!" Spectre, Metldown, etc.

    Given enough access and poking around, all code has a hole.
    Reply
  • deksman
    No one ever said that AMD's CPU's are 'untouchable' by potential security exploits... however, AMD remains LEAST AFFECTED (at least compared to Intel), and are usually quick to respond with security patches.

    The sheer amount of security vulnerabilities that affect Intel are usually more important for servers and data centres (where big money is).
    On an individual user level, a person is not very likely to encounter issues related to these exploits... however, out of the two, Zen uArch is (and I am repeating myself here) 'least affected'.
    Reply
  • InvalidError
    USAFRet said:
    Given enough access and poking around, all code has a hole.
    It is possible to write secure code, albeit on the smaller end of things. A lot of the insecurity in modern software comes from pervasive use of off-the-shelf blobs, rarely vetting those blobs and how they are used. Kind of hard to fully vet code in modern environments where "hello world" involves 50 million lines of external code most people have zero visibility into.
    Reply
  • Phaaze88
    LE GASP!
    Reply