Thursday, January 4, 2018

The Meltdown and Spectre Bugs: Should You Be Worried?

I read news reports yesterday about two security vulnerabilities that worry me a bit, Meltdown and Spectre. Experts are saying that they affect nearly every processor made in the last twenty years! This includes computers, cell phones, tablets, and cloud services including music and video streaming sites. 

How it works is complicated. The best description I found was from the Intel website. "Most modern CPUs are able to predict what code they might need to run for a given process, and run it in advance so the results are ready before they are needed. This can significantly improve the overall performance and efficiency of a CPU, resulting in a faster and more capable computer or mobile device. CPUs may sometimes move data from one memory location to another for use by these processes. Although the system is operating exactly as it is designed to, in certain cases some of this data may be observable through these exploits"

Technology companies are working furiously to create patches to protect themselves and their customers. Amazon web services, Google Cloud, and Microsoft Allure immediately deployed patches against Meltdown and there is no indication that the available exploits could work against them. Spectre is more deeply rooted and will be harder to fix. (Source: the Verge

According to a Bloomberg Technology article, the vulnerability will not prevent your computer from working and so far there have not been reports of anyone's computer being attacked. This makes me feel a little bit better. 

What should one do to protect your devices? Download and install ALL UPDATES! This means Windows updates, browser updates, app updates, antivirus program updates and firmware updates on any school or personal technology. 




No comments:

Post a Comment