Flavien Solt (@flaviensolt) 's Twitter Profile
Flavien Solt

@flaviensolt

UC Berkeley Postdoc in hardware security | X16

ID: 1534834527914315776

calendar_today09-06-2022 09:47:26

23 Tweet

109 Followers

5 Following

johannes (@wiknerj) 's Twitter Profile Photo

Today Kav and I are finally allowed to talk about #Retbleed. In 2018, #SpectreV2 was fixed by replacing indirect jumps with returns. But, returns can be poisoned like indirect jumps, throwing us us back to 2018 again. Paper, demo, addendum, code @ comsec.ethz.ch/retbleed

Kathi Ceesay-Seitz (@k_ceesayseitz) 's Twitter Profile Photo

We define 𝜇CFI, a new CPU security property that detects microarchitectural constant time violations and CPU vulnerabilities that allow control-flow-hijacking attacks (4 RISC-V CVEs) or proves their absence: comsec.ethz.ch/research/hardw… (Paper at CCS'24) Flavien Solt Kav

Flavien Solt (@flaviensolt) 's Twitter Profile Photo

Confused deputy attacks on EDA software generate vulnerable hardware from secure RTL. TransFuzz discovers 20 such translation bugs in open-source EDA (25 CVEs). Will be presented at USENIX Security '25. comsec.ethz.ch/wp-content/fil… Kav Kathi Ceesay-Seitz