Security researchers have found over 119 malware samples that target Meltdown/Spectre

Posted on Thursday, February 01 2018 @ 22:26 CET by Thomas De Maesschalck
It appears malware creators didn't waste any time to roll out new strains that take advantage of the proof-of-concept (PoC) code that was part of the public disclosure of the Meltdown and Spectre CPU vulnerabilities.

Fortinet researchers released a chart that shows the total number of unique samples they uncovered between January 7 and January 22. In this relatively short time frame, they came across 119 malware samples that exploit Meltdown and Spectre flaws. All of them were based on the PoC code.
Security researchers typically release release PoC alongside their vulnerability research paper to demonstrate that a bug is not just theoretical and can indeed be exploited. In the case of Spectre, especially, a PoC may have been necessary because otherwise chip makers may have continued to consider the flaw theoretical, just as they’ve been doing for the past 20 years.
Meltdown and Spectre in the wild

Via: Tom's Hardware


About the Author

Thomas De Maesschalck

Thomas has been messing with computer since early childhood and firmly believes the Internet is the best thing since sliced bread. Enjoys playing with new tech, is fascinated by science, and passionate about financial markets. When not behind a computer, he can be found with running shoes on or lifting heavy weights in the weight room.



Loading Comments