Confidential VMs Hacked via New Ahoi Attacks

April 8, 2024 at 09:54AM Researchers from ETH Zurich have unveiled new attack techniques called Ahoi attacks, targeting hardware-based trusted execution environments in cloud platforms using AMD’s SEV-SNP and Intel’s TDX technologies. The attacks allow malicious hypervisors to compromise confidential virtual machines and gain root access. The researchers have notified relevant companies, and relevant patches … Read more

Intel, AMD, Zoom, Splunk Release Patch Tuesday Security Advisories

January 11, 2024 at 09:43AM On the first Patch Tuesday of 2024, Intel, AMD, Zoom, and Splunk released security advisories. Intel addressed BIOS firmware vulnerabilities, AMD reported a low-severity SEV-SNP issue, and Splunk patched critical and high-severity vulnerabilities. Zoom informed customers of a high-severity flaw affecting Windows products. Several other companies also released their first … Read more