Hardware Backdoor Discovered in Some x86 CPUs
Researchers have uncovered a hardware backdoor in some x86 CPUs, allowing unprivileged code to read and write kernel data. The backdoor, known as rosenbridge, is typically disabled but found enabled by default on some systems. This raises security concerns and highlights the need for CPU manufacturers to address the issue.
Key points
- The rosenbridge backdoor is a hardware flaw in some x86 CPUs, allowing unprivileged code to read and write kernel data.
- The backdoor is typically disabled but found enabled by default on some systems, posing a security risk.
- Researchers have developed tools to check for and close the backdoor, but CPU manufacturers must address the issue.
- The rosenbridge backdoor is distinct from other publicly known coprocessors on x86 CPUs, such as the Management Engine or Platform Security Processor.
- The discovery highlights the need for CPU manufacturers to ensure the security and integrity of their products.
Hardware Backdoor Discovered in Some x86 CPUs
Researchers have uncovered a hardware backdoor in some x86 CPUs, allowing unprivileged code to read and write kernel data. The backdoor, known as rosenbridge, is typically disabled but found enabled by default on some systems.
What is the rosenbridge backdoor?
The rosenbridge backdoor is a small, non-x86 core embedded alongside the main x86 core in the CPU. It is enabled by a model-specific-register control bit and then toggled with a launch-instruction. The embedded core is then fed commands, wrapped in a specially formatted x86 instruction, which it executes bypassing all memory protections and privilege checks.
What are the implications of the rosenbridge backdoor?
The discovery of the rosenbridge backdoor raises significant security concerns. If left unaddressed, it could allow malicious actors to gain unauthorized access to sensitive data and compromise the security of systems. Researchers have developed tools to check for and close the backdoor, but CPU manufacturers must address the issue to prevent further exploitation.
What's next?
CPU manufacturers must take immediate action to address the rosenbridge backdoor. This includes updating firmware and software to disable the backdoor and ensuring that it is not enabled by default on any systems. Users should also be aware of the potential risks and take steps to protect their systems.
Sources
The WireByte editorial team synthesises technology news from multiple primary sources, verifies the facts, and links every source. Articles are produced with AI assistance and reviewed under our editorial policy.