AGL 40.40 Increased By ▲ 0.20 (0.5%)
AIRLINK 129.25 Increased By ▲ 0.14 (0.11%)
BOP 6.81 Increased By ▲ 0.21 (3.18%)
CNERGY 4.13 Increased By ▲ 0.10 (2.48%)
DCL 8.73 Increased By ▲ 0.28 (3.31%)
DFML 41.40 Increased By ▲ 0.15 (0.36%)
DGKC 87.75 Increased By ▲ 0.75 (0.86%)
FCCL 33.85 Increased By ▲ 0.50 (1.5%)
FFBL 66.40 Increased By ▲ 0.50 (0.76%)
FFL 10.69 Increased By ▲ 0.15 (1.42%)
HUBC 113.51 Increased By ▲ 2.81 (2.54%)
HUMNL 15.65 Increased By ▲ 0.42 (2.76%)
KEL 4.87 Increased By ▲ 0.09 (1.88%)
KOSM 7.62 Decreased By ▼ -0.21 (-2.68%)
MLCF 43.10 Increased By ▲ 1.20 (2.86%)
NBP 61.50 Increased By ▲ 1.00 (1.65%)
OGDC 192.20 Increased By ▲ 9.40 (5.14%)
PAEL 27.05 Increased By ▲ 1.69 (6.66%)
PIBTL 7.26 Increased By ▲ 1.00 (15.97%)
PPL 150.50 Increased By ▲ 2.69 (1.82%)
PRL 24.96 Increased By ▲ 0.40 (1.63%)
PTC 16.25 Increased By ▲ 0.01 (0.06%)
SEARL 71.30 Increased By ▲ 0.80 (1.13%)
TELE 7.25 Decreased By ▼ -0.05 (-0.68%)
TOMCL 36.29 Decreased By ▼ -0.01 (-0.03%)
TPLP 8.05 Increased By ▲ 0.20 (2.55%)
TREET 16.30 Increased By ▲ 1.00 (6.54%)
TRG 51.56 Decreased By ▼ -0.14 (-0.27%)
UNITY 27.35 No Change ▼ 0.00 (0%)
WTL 1.27 Increased By ▲ 0.04 (3.25%)
BR100 9,967 Increased By 125.2 (1.27%)
BR30 30,751 Increased By 714.7 (2.38%)
KSE100 93,345 Increased By 824.9 (0.89%)
KSE30 29,017 Increased By 230.5 (0.8%)

As tech giants race against the clock to fix major security flaws in microprocessors, many users are wondering what lurks behind unsettling names like "Spectre" or "Meltdown" and what can be done about this latest IT scare.
WHAT IS MELTDOWN? AND SPECTRE?
These are the names given to two flaws which have been detected in most of the micro processors in use today, be it on computers, tablets, smartphones or game consoles. They are among the first flaws ever found to affect the running of every IT system in the world. Meltdown appears for now to affect mostly chips built by US giant Intel, according to sector specialists Kaspersky Labs and Symantec.
The flaw could allow attackers to break down the barrier between user apps and the heart of the operating system, according to Kaspersky Labs, "enabling them to potentially steal data from the memory of running apps". Anybody exploiting the flaw would get access to a complete cartography of all the files present in the device's memory at the time of the attack, by hijacking a process that was originally designed to optimise processor performance.
The Spectre threat is potentially even bigger because it concerns all chip makers: AMD and AMR as well as Intel.
WHAT IS A MICRO PROCESSOR?
It's the central element of computers, smartphones and other digital devices, allowing them to function by carrying out instructions and handling programme data. A processor is made up of a number of transistors. The more transistors there are, the higher the chip's capacity to handle data. These chips are called micro-processors because processor sizes have come down significantly to integrate them into small devices. Processor power is measured in bits, a gauge of how many pieces of information a processor can handle at any one time.
WHAT ARE THE DANGERS?
Potentially they are enormous. Hackers who know what they're doing could, for example, use Meltdown to gain access to all information stored on a remote server, or cloud, so long as they rent space on the same server.
The stakes are highest for the protection of sensitive data such as passwords, pictures, personal documents and e-mails. Cloud storage sites represent a particularly grave risk because once such a server is vulnerable, so are all data hosted there.
This is why Microsoft, Amazon or OVH have been scrambling to install updates to restore data protection on their servers. Experts point out, however, that it takes a very high level of technical skill to exploit the Spectre and Meltdown flaws, limiting the risks somewhat.
Michael Schwartz, an IT expert quoted in German daily Tagesspiegel Friday, said that a hacker must find out which programmes are currently running before triggering an assault, "which is why it's not that easy to launch mass attacks".
WHAT POSSIBLE PROTECTION?
For now, the only way to beef up defences is to install the security updates offered by the chip makers themselves, or by the operating systems providers: Microsoft for Windows, Apple for iOS and Google for Android and Linux. These updates for now mostly concern Meltdown. Spectre appears, for now, to be more difficult to patch. Either way, these updates are little more than tinkering.
The safest solution would be to upgrade to a last-generation processor, a switch that will take much longer to implement because it only happens when users buy new devices. In the meantime retail users, said Schwartz, "shouldn't panic and just behave as they would normally.
"If you follow the usual security recommendations and don't open unknown attachments or click on strange links, then you are in no immediate danger."

Copyright Agence France-Presse, 2018

Comments

Comments are closed.