Sujet : Zen Microcode
De : taviso (at) *nospam* gmail.com (Tavis Ormandy)
Groupes : comp.archDate : 06. Mar 2025, 00:07:18
Autres entêtes
Message-ID : <m2s3p6F12efU1@mid.individual.net>
User-Agent : slrn/1.0.3 (Linux)
This might be interesting to regulars here, the scheme used by AMD to
verify microcode patches are authentic was much weaker than intended. It
turns out you can actually load your own patches.
https://bughunters.google.com/blog/5424842357473280/zen-and-the-art-of-microcode-hackingThere is a (basic) toolchain for microcode development here, any patches
or would be appreciated!
https://github.com/google/security-research/blob/master/pocs/cpus/entrysign/zentool/README.mdTavis.
-- _o) $ lynx lock.cmpxchg8b.com /\ _o) _o) $ finger taviso@sdf.org_\_V _( ) _( ) @taviso