<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0"
    xmlns:content="http://purl.org/rss/1.0/modules/content/"
    xmlns:dc="http://purl.org/dc/elements/1.1/"
    xmlns:atom="http://www.w3.org/2005/Atom">
    <channel>
        <title>CVE-2020-8695 — LowEndSpirit DEV</title>
        <link>https://dev.lowendspirit.com/index.php?p=/</link>
        <pubDate>Sat, 06 Jun 2026 07:48:53 +0000</pubDate>
        <language>en</language>
            <description>CVE-2020-8695 — LowEndSpirit DEV</description>
    <atom:link href="https://dev.lowendspirit.com/index.php?p=/discussions/tagged/cve-2020-8695/feed.rss" rel="self" type="application/rss+xml"/>
    <item>
        <title>PLATYPUS - CPU side-channel attack (CVE-2020-8694 / CVE-2020-8695)</title>
        <link>https://dev.lowendspirit.com/index.php?p=/discussion/2056/platypus-cpu-side-channel-attack-cve-2020-8694-cve-2020-8695</link>
        <pubDate>Wed, 11 Nov 2020 18:19:16 +0000</pubDate>
        <category>Technical</category>
        <dc:creator>souen</dc:creator>
        <guid isPermaLink="false">2056@/index.php?p=/discussions</guid>
        <description><![CDATA[<p>Time to update.</p>

<blockquote><div>
  <p>With PLATYPUS, we present novel software-based power side-channel attacks on Intel server, desktop and laptop CPUs. We exploit the unprivileged access to the Intel RAPL interface exposing the processor's power consumption to infer data and extract cryptographic keys.</p>
</div></blockquote>

<p>[...]</p>

<blockquote><div>
  <p>On Linux, the powercap framework provides unprivileged access to the Intel RAPL counters. With a recent security update, this access is revoked, and an unprivileged attacker can not retrieve power measurements anymore.</p>
  
  <p>However, this update does not protect against a privileged attacker, e.g., a compromised operating system targeting Intel SGX. To mitigate attacks in this scenario, Intel released microcode updates to affected processors. These updates ensure that the reported energy consumption hinders the ability to distinguish the same instructions with different data or operands if Intel SGX is enabled on the system.</p>
  
  <p>Please make sure to get the latest updates for your operating system and BIOS.</p>
</div></blockquote>

<p>List of Intel CPUs affected: <a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00389.html" rel="nofollow">https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00389.html</a></p>

<p>AMD and ARM processors may also be affected, though untested.</p>

<p>Source: <a href="https://platypusattack.com/" rel="nofollow">https://platypusattack.com/</a></p>
]]>
        </description>
    </item>
   </channel>
</rss>
