Get the latest tech news

Ransomware can now run directly on the CPU, researcher warns | The ghost in the machine is reaching the deepest foundations of the computing infrastructure


A security researcher designed a way to "weaponize" microcode updates to install ransomware directly onto the CPU. Rapid7 analyst Christiaan Beek drew inspiration from a critical flaw...

However, this low-level layer between hardware and machine code can also serve as a stealthy attack vector – capable of hiding malicious payloads from all software-based defenses. Rapid7 analyst Christiaan Beek drew inspiration from a critical flaw in AMD's Zen processors, discovered by Google researchers earlier this year. The flaw could allow attackers to modify the RDRAND instruction and inject a custom microcode that always selects "4" when generating a random number.

Get the Android app

Or read this on r/technology

Read more on:

Photo of Ransomware

Ransomware

Photo of researcher

researcher

Photo of machine

machine

Related news:

News photo

You think ransomware is bad now? Wait until it infects CPUs

News photo

Intel oneDNN 3.8 Brings More CPU & GPU Performance Optimizations

News photo

Chinese chipmaker readies 128-core, 512-thread CPU with AVX-512 and 16-channel DDR5-5600 support