ELSEIF
Your brief EB
231 stories from 83 feeds 133 clusters Refreshed 13 minutes ago next pull 09:21

SECURITY Signal 505

Hardware backdoors in some x86 CPUs

A researcher discovered a hardware backdoor in some VIA C3 x86 processors that allows userland code to bypass kernel protections and freely read or write kernel data.

WHY IT MATTERS

Systems running these specific processors, particularly in industrial, point-of-sale, ATM, and healthcare settings, may be vulnerable to privilege escalation if the backdoor is enabled by default. The discovery provides a concrete case study for how deeply embedded, non-x86 cores can subvert processor security boundaries.

Written by elseif from the cluster below · every claim links back to a source

The three things worth knowing

01

The rosenbridge backdoor is a hidden, non-x86 core inside some VIA C3 processors that executes a custom instruction set, bypassing all memory protections and privilege checks.

02

While the backdoor is supposed to require kernel-level access to activate via a model-specific-register, it has been observed enabled by default on some systems.

03

Only VIA C3 CPUs are thought to be affected, and later generations no longer contain this feature, but a software fix can only disable it early in boot and cannot prevent a kernel-level attacker from re-enabling it.

THE CLUSTER

Same story, 1 feed.

ORDERED BY FIRST SEEN
Hacker News Hardware backdoors in some x86 CPUs Open ↗