Jo Van Bulck
Sessions
12-27
19:10
40min
LVI: Hijacking Transient Execution through Microarchitectural Load Value Injection
Michael Schwarz, Jo Van Bulck
Load Value Injection (LVI) is a new class of transient-execution attacks exploiting microarchitectural flaws in modern processors to inject attacker data into a victim program and steal sensitive data and keys from Intel SGX, a secure vault in Intel processors for your personal data.
IT-Security
chaosstudio-hamburg
12-29
13:00
40min
Ramming Enclave Gates: A Systematic Vulnerability Assessment of TEE Shielding Runtimes
Jo Van Bulck, Fritz Alder
This talk presents an extensive security analysis of trusted-execution environment shielding runtimes, covering over two years of continuing research and leading to 7 CVE designations in industry-grade Intel SGX enclave SDKs.
IT-Security
rC1