Konubinix' opinionated web of thoughts

Intel® SGX Technology and the Impact of Processor Side-Channel Attacks

Fleeting

Intel® sgx Technology and the Impact of Processor Side-Channel Attacks

No malware, malicious administrator or attacker gaining root privileges can compromise the data, even by physically probing the memory bus. Even side channel attacks on these components are rendered useless.

[2021-02-16 Tue 07:21]

While standard encryption technologies protect data at rest and data in motion, Intel® SGX protects the final frontier - data in use

[2021-02-16 Tue 07:22]

The use of Intel® SGX technology protects against an enormous range of attack vectors, including many processor side-channel attacks, but there are still a few processor side-channel attacks that have nonetheless been shown to be effective even against Intel® SGX, and new attacks are still occasionally being found. However, all is not lost, as we shall see.

[2021-02-16 Tue 07:23]

In response to the vulnerabilities that have been discovered, Intel has issued microcode updates, incorporated silicon-level fixes into new CPUs, and recommended software developers employ mitigations where appropriate, such as disabling certain advanced CPU features like hyperthreading or flushing caches at critical points in the code path.

https://fortanix.com/blog/2020/03/intel-sgx-technology-and-the-impact-of-processor-side-channel-attacks/

[2021-02-16 Tue 07:24]

For more information, download the Side Channel and Runtime Encryption Solutions with Intel® SGX whitepaper.