Intel® SGX Technology and the Impact of Processor Side-Channel Attacks
Fleeting- External reference: https://fortanix.com/blog/2020/03/intel-sgx-technology-and-the-impact-of-processor-side-channel-attacks/
Intel® sgx Technology and the Impact of Processor Side-Channel Attacks
No malware, malicious administrator or attacker gaining root privileges can compromise the data, even by physically probing the memory bus. Even side channel attacks on these components are rendered useless.
While standard encryption technologies protect data at rest and data in motion, Intel® SGX protects the final frontier - data in use
The use of Intel® SGX technology protects against an enormous range of attack vectors, including many processor side-channel attacks, but there are still a few processor side-channel attacks that have nonetheless been shown to be effective even against Intel® SGX, and new attacks are still occasionally being found. However, all is not lost, as we shall see.
In response to the vulnerabilities that have been discovered, Intel has issued microcode updates, incorporated silicon-level fixes into new CPUs, and recommended software developers employ mitigations where appropriate, such as disabling certain advanced CPU features like hyperthreading or flushing caches at critical points in the code path.
For more information, download the Side Channel and Runtime Encryption Solutions with Intel® SGX whitepaper.