Never miss a story

Get subscribed to our newsletter


×
The chipmaker Intel announced earlier this year that more than 1 billion ST33 chips have been sold. Wikimedia Commons

An international team of researchers has discovered serious security vulnerabilities in computer chips made by chip giant Intel and Geneva-based semiconductor manufacturer STMicroelectronics that has affected billions of laptop, server, tablet and desktop users globally.

The two vulnerabilities, which have now been addressed, would have allowed hackers to employ timing side-channel attacks to steal cryptographic keys that are supposed to remain safely inside the chips.


The recovered keys could be used to compromise a computer’s operating system, forge digital signatures on documents, and steal or alter encrypted information.

The flaws are located in TPMs, or trusted platform modules, which are specialized, tamper-resistant chips that computer manufacturers have been deploying in nearly all laptops, smartphones and tablets for the past 10 years.

“If hackers had taken advantage of these flaws, the most fundamental security services inside the operating system would have been compromised,” said Berk Sunar, professor of electrical and computer engineering and leader of Vernam Lab at Worcester Polytechnic Institute in Massachusetts.

“This chip is meant to be the root of trust. If a hacker gains control of that, they’ve got the keys to the castle,” Sunar warned.


An international team of researchers has discovered serious security vulnerabilities in computer chips made by chip giant Intel and Geneva-based semiconductor manufacturer STMicroelectronics that has affected billions of laptop, server, tablet and desktop users globally. Pixabay

Following an international security standard, TPMs are used to secure encryption keys for hardware authentication and cryptographic keys, including signature keys and smart card certificates.

Pushing the security down to the hardware level offers more protection than a software-only solution and is required by some core security services.

WPI security researchers Sunar and Daniel Moghimi led an international team of researchers that discovered these two serious security vulnerabilities.

One of the flaws the WPI team discovered is in Intel’s TPM firmware, or fTPM–software that runs in the Security and Management Engine in processors the company has produced since it launched its Haswell processor in 2013.
Haswell CPUs are used in the popular Core i3, i5, and i7 family of processors.

The second flaw is in STMicroelectronics’ TPM.

Notably, the STMicroelectronics’ vulnerability is in a chip that has received a strong industry-recognized security certification from “Common Criteria” — a highly acknowledged security stamp of approval based on international specifications designed to ensure technology meets high security standards preferred in industrial and government deployments.

The WPI researchers worked with Thomas Eisenbarth, a professor of IT security at the University of Lubeck in Germany, and Nadia Heninger from University of California, San Diego.

Once discovered, the flaws were reported to the chipmakers by the WPI researchers, who also have described the flaws in a paper to be presented at the “29th USENIX Security Symposium” in Boston next August.

“We provided our analysis tools and results to Intel and STMicroelectronics and both companies worked with us to create a patch or make sure a security patch will be provided for the next generation of these devices,” said Moghimi.


The two vulnerabilities, which have now been addressed, would have allowed hackers to employ timing side-channel attacks to steal cryptographic keys that are supposed to remain safely inside the Intel chips. Wikimedia Commons

Moghimi explained that if hackers gained access to the Intel software, they could forge digital signatures, enabling them to alter, delete, or steal information.

The research team discovered another flaw in the STMicroelectronics’ TPM, which is based on the company’s popular ST33 chip.

ALSO READ: Use These Tools to Calculate Your Crypto Tax

The chipmaker announced earlier this year that more than 1 billion ST33 chips have been sold. (IANS)


Popular

IANS

The aim of the book is to teach children that families can exist in different forms, and show them how to accept the diversity in family backgrounds.

By Siddhi Jain

Delhi-based author Pritisha Borthakur is set to release her new book, 'Puhor and Niyor's Mural of Family Stories'. The 1,404-word children's book was put together to address a new kind of societal debacle in the family system. The author says the aim is to teach children that families can exist in different forms, and show them how to accept the diversity in family backgrounds.

The author who named the book after her twin sons -- Puhor and Niyor -- is a parent who has seen and heard the tales of ridicule and discrimination suffered by many in India and beyond. She says the book is an artistic illustration for kids that details how different families can live and coexist. Whether it's children with two dads or two moms, children with a single dad or single mom, and even multiracial family units, Borthakur's book teaches love, understanding, and compassion towards unconventional families.

Beyond race, gender, color, and ethnicity which have formed the bases for discrimination since the beginning of time, this book aims to bring to light a largely ignored issue. For so long, single parents have been treated like a taboo without any attempt to understand their situations; no one really cares how or why one's marriage ended but just wants to treat single parents as villains simply for choosing happiness and loving their children.

Homosexual parents, a relatively new family system, is another form that has suffered hate and discrimination for many years. Pritisha emphasizes the need to understand that diversity in people and family is what makes the world beautiful and colourful. 'Puhor and Niyor's Mural of Family Stories' is a firm but compassionate statement against all forms of discrimination on the bases of sexual identity, gender, race, and even differences in background

four children standing on dirt during daytime 'Puhor and Niyor's Mural of Family Stories' is a firm but compassionate statement against all forms of discrimination on the bases of sexual identity, gender, race and even differences in background. | Photo by Ben Wicks on Unsplash


Keep Reading Show less
Photo by Lina Trochez on Unsplash

Clean and maintained hands boost confidence in daily life activities.

If you feel that clean and well-groomed hands are just an essential prerequisite for women, you might like to think twice. Men should equally pay attention to their hands because our hand houses 1,500 bacteria living on each square centimeter of its skin. You can easily assume what havoc it can create in our body because in India we have the culture of eating with our hands and spaces beneath nails can become breeding heaven for germs. Moreover, clean and maintained hands boost confidence in their daily life activities. Therefore, it's important to keep your hands clean irrespective of your gender by washing or sanitizing at regular intervals. And, to keep them groomed, you don't have to visit a salon.

Rajesh U Pandya, Managing Director, KAI India, gives easy and completely doable tips to follow at home:

* Refrain from harsh soaps: You should be mindful of the soap you are using to wash your hands. Your soap can have a moisturizing element in it like aloe vera or shea butter. Ensure that you're washing your hands with normal water as hot water can make your hand's skin dry and scaly.

Soap bars organic You should be mindful of the soap you are using to wash your hands. | Photo by Aurélia Dubois on Unsplash

Keep Reading Show less
Photo by Dmitry Demidko on Unsplash

Bitcoin has become an essential crypto asset in modern portfolios and investment funds.

Bitcoin has become an essential crypto asset in modern portfolios and investment funds. The confidence generated in this cryptocurrency will depend a lot on the diversification that companies make in their balance sheets in Bitcoin and the increase of institutional investors that allocate a percentage of their funds in this crypto. American fund manager Cathie Wood makes some interesting predictions, both in the rise that the Bitcoin price will experience in the next 5 years, suggesting these institutional investors allocate 5% of their funds; this will help leverage the Bitcoin market.

Bitcoin will grow by a tenfold

Keep reading... Show less