Intel Hyper-Threading Accused of Being a Security Threat

Following the reveal of the Foreshadow (L1TF) Intel CPU flaw, as well as the previous TLBleed flaw, Theo de Raadt, founder of OpenBSD, which makes a free, multi-platform, UNIX-like operating system, recommended everyone completely disable Intel’s Hyper-Threading in BIOS before hackers start taking advantage of it.

Latest Videos FromTom's Hardware
Contributor

Lucian Armasu is a Contributing Writer for Tom's Hardware US. He covers software news and the issues surrounding privacy and security.

  • dudmont
    The next thing recommended will be to remove our CPUs, then remove the hammer from our tool boxes, and proceed to go to town on the die of our CPUs. I think I'll stick with the law of nature here. There's safety in the herd. Better to be one of 2 billion.
    Reply
  • I wonder if this could possibly be convincing companies to choose AMD Epyc. Recently Dropbox decided to use Epyc processors.
    I doubt anyone would answer this question directly, but why not ask someone anonymously? It could be interesting.
    Reply
  • techy1966
    This sounds like the stupidest thing I have ever heard today disable hyper threading. Where do these guys come up with this stuff? Sorry but my hyper threading is staying on I am not about to turn my i7 into an i5 because someone is yelling the sky is falling the sky is falling.
    Reply
  • The Paladin
    " its am AMD plot!" so it is the hyperthreading, an INTEL only code, yep its an AMD Plot I am sure of it.

    * surgeon general warning : Frenchman with sarcasm syndrome, all information posted above is designed for comedy, do not get panties in a twist over it"*
    Reply
  • hanshenrik123
    little of value was lost. it's already a hazard to fps.
    Reply
  • kingsol767
    In defense of Intel, these flaws are the result of people chipping at the architecture for years. The level of risk and to who should be made clearer.

    On the other hand, the lack of true competition breeds complacency. Intel and Apple are in the same boat. The marketing teams have taken over. This leaves breeds weakness in the actual products.
    Reply
  • JamesSneed
    21261736 said:
    This sounds like the stupidest thing I have ever heard today disable hyper threading. Where do these guys come up with this stuff? Sorry but my hyper threading is staying on I am not about to turn my i7 into an i5 because someone is yelling the sky is falling the sky is falling.

    None of it matters unless you are running a datacenter.
    Reply
  • JamesSneed
    21261930 said:
    In defense of Intel, these flaws are the result of people chipping at the architecture for years. The level of risk and to who should be made clearer.

    On the other hand, the lack of true competition breeds complacency. Intel and Apple are in the same boat. The marketing teams have taken over. This leaves breeds weakness in the actual products.

    Also this architecture has went mostly unchanged for longer than I believe any Intel architecture has in the past. If only they were on IceLake already, it would take researchers a lot of time to work out new hacks for it. Its a price you pay for stagnating due to lack of competition.
    Reply
  • jimmysmitty
    21261628 said:
    The next thing recommended will be to remove our CPUs, then remove the hammer from our tool boxes, and proceed to go to town on the die of our CPUs. I think I'll stick with the law of nature here. There's safety in the herd. Better to be one of 2 billion.

    The most secure computer is an unplugged computer.

    21261717 said:
    I wonder if this could possibly be convincing companies to choose AMD Epyc. Recently Dropbox decided to use Epyc processors.
    I doubt anyone would answer this question directly, but why not ask someone anonymously? It could be interesting.

    Epyc has SMT and while Intel has a slightly different implementation it is not unlikely that even AMD CPUs will also have similar flaws in them. Intel is getting more spotlight since they still own the lions share of the processor market. The more that AMD gets the more likely we are to find flaws of their own.

    The problem is that people are freaking out way too much over some of them.
    Reply
  • dudmont
    21262053 said:

    The most secure computer is an unplugged computer.

    Indeed! :) I suspect the NSA could still make a game effort of it though!
    ;)
    Reply