Microsoft, Google find fresh flaw in chips, but risk is low
Cyber-security researchers have found a new security flaw that affects a broad swath of modern computing chips and is related to the Spectre and Meltdown chip flaws that emerged in January.
Cyber-security researchers have found a new security flaw that affects a broad swath of modern computing chips and is related to the Spectre and Meltdown chip flaws that emerged in January. The newest chip problem, known as Speculative Store Bypass or "Variant 4" because it`s in the same family as the original group of flaws, was disclosed by security researchers at Microsoft Corp and Alphabet Inc`s Google on Monday. Though the flaw affects many chips from Intel Corp, Advanced Micro Devices Inc and Softbank Group`s ARM Holdings, researchers described the risks as low, partly because of web browser patches already issued earlier this year to address Spectre.
The Meltdown and Spectre flaws, which emerged in January, can allow passwords and other sensitive data on chips to be read. The flaws result from the way computers try to guess what users are likely to do next, a process called speculative execution.
When the flaws emerged in January, researchers warned that they were likely to find new variants of Spectre in the future. Earlier this month, German computer science magazine c`t reported that a "next generation" of flaws had been found in Intel`s chips and was likely to be disclosed this month. Intel declined to comment on whether Monday`s announcement was related to the German magazine`s story.
In its research findings, Microsoft said that patches issued for common web browsers earlier this year greatly increased the difficulty of carrying out an attack with the newly discovered flaw.
Chips from Intel, AMD and ARM all have patches available, either directly from the makers or through software suppliers such as Microsoft. Intel said it expects a performance slowdown of between 2 percent and 8 percent from the patches, and ARM said it expects a slowdown of between 1 percent and 2 percent.
Watch this Zee Business video here:
However, Intel said that because of the low risk of a real-world attack, it would ship its patches turned off by default, giving users the choice whether to turn them on. AMD also advised leaving the patches turned off due to the difficulty of carrying out an attack.
The security problems do not appear to have impacted chipmakers` stock prices. Intel shares are up nearly 16 percent to since the start of the year to $54.32, and AMD shares are up 18.3 percent to $12.99 since the start of the year.
Get Latest Business News, Stock Market Updates and Videos; Check your tax outgo through Income Tax Calculator and save money through our Personal Finance coverage. Check Business Breaking News Live on Zee Business Twitter and Facebook. Subscribe on YouTube.
RECOMMENDED STORIES
Senior Citizen Latest FD Rates: Know what major banks like SBI, PNB, Canara Bank, HDFC Bank, ICICI Bank are providing on fixed deposits
Gratuity Calculator: Rs 38,000 as last-drawn basic salary, 5 years and 5 months of service; what will be gratuity amount?
Retirement Planning: In how many years your Rs 25K monthly SIP investment will grow to Rs 8.8 cr | See calculations
Top 5 Small Cap Mutual Funds with best SIP returns in 1 year: See how Rs 25,000 monthly investment has grown in each scheme
Top 7 SBI Mutual Funds With Best SIP Returns in 1 Year: Rs 25,000 monthly SIP investment in No.1 fund has jumped to Rs 3,58,404
SBI 5-Year FD vs MIS: Which can offer higher returns on a Rs 2,00,000 investment over 5 years? See calculations
11:54 AM IST