Intel SMM exploit published

SMM (System Management Mode) is the portion of the Intel processors that runs above the hypervisor. Researchers have found a way to exploit the Intel caching mechanisms to jump from the hypervisor at ring 0 up a level to SMM. The only way to detect the exploit is to disassemble the system and perform some hardcore analysis. Compromising SMM allows you to communicate with services at lower rings for rootkits, etc.

This is not a new disclosure. Flaws in intel caching have been reported since 2005.

Possibly Related Posts:


Leave a Reply

  

  

  

You can use these HTML tags

<a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>