July 6th, 2024

Ampere: Making Future Software Memory-Safe, a Path Towards Secure Cloud

The White House emphasizes reducing cyber attack surfaces by addressing memory safety vulnerabilities. Ampere's memory tagging technology enhances security by preventing memory-related exploits, offering robust protection for cloud services without performance impact.

Read original articleLink Icon
Ampere: Making Future Software Memory-Safe, a Path Towards Secure Cloud

The White House Office of the National Cyber Director highlighted the importance of reducing cyber attack surfaces by addressing memory safety vulnerabilities in software. Past cyber events like Heartbleed and BLASTPASS were linked to such vulnerabilities. Ampere's innovative memory tagging technology aims to enhance security by detecting and preventing buffer overflow attacks and pointer errors. Memory Tagging assigns unique tags to memory and software pointers, ensuring data integrity and preventing malicious code execution. This feature offers protection against various memory-related exploits, enhancing system security without significant performance impact. By enabling Memory Tagging, cloud service providers can offer more secure services to customers, safeguarding against internal and external memory attacks. Ampere's focus on high performance extends to this security feature, providing robust protection for cloud products and solutions.

Related

Vulnerability in Popular PC and Server Firmware

Vulnerability in Popular PC and Server Firmware

Eclypsium found a critical vulnerability (CVE-2024-0762) in Intel Core processors' Phoenix SecureCore UEFI firmware, potentially enabling privilege escalation and persistent attacks. Lenovo issued BIOS updates, emphasizing the significance of supply chain security.

CISA and Partners Guidance for Memory Safety in Critical Open Source Projects

CISA and Partners Guidance for Memory Safety in Critical Open Source Projects

CISA, FBI, and Australian Cyber Security Centre collaborate on memory safety guidance for open source projects. Emphasizes risk understanding, roadmap creation, and collaboration with the open source community for enhanced cybersecurity.

Fourth Workshop on DRAM Security (DRAMSec)

Fourth Workshop on DRAM Security (DRAMSec)

The Fourth Workshop on DRAM Security (DRAMSec) at ISCA 2024 addresses persistent DRAM security challenges like Rowhammer attacks, side-channel vulnerabilities, and DoS threats. Keynote speakers discuss evolving threats and future solutions. Participants can attend in person or remotely.

GPUs can now use PCIe-attached memory or SSDs to boost VRAM capacity

GPUs can now use PCIe-attached memory or SSDs to boost VRAM capacity

Major companies like AMD, Intel, and Nvidia are considering supporting Panmnesia's CXL IP for GPU memory expansion using PCIe-attached memory or SSDs. Panmnesia's low-latency solution outperforms traditional methods, showing promise for AI/HPC applications. Adoption by key players remains uncertain.

Bubble Memory

Bubble Memory

Bubble memory, a non-volatile computer memory from the 1970s, used magnetic bubbles to store data. Despite early potential, it declined due to competition from faster chips and hard drives, becoming obsolete.

Link Icon 1 comments