Cyber

New Spectre v2 Attack Variant Leaks Linux Root Password Hash in Minutes

A newly devised Branch Target Reuse attack can extract Linux root password hashes on Intel computers within minutes.

·1 min read
New Spectre v2 Attack Variant Leaks Linux Root Password Hash in Minutes

Security researchers have discovered a dangerous new variant of the Spectre v2 vulnerability affecting Linux systems running on Intel processors. Dubbed Branch Target Reuse (BTR), this novel attack method can recover root password hashes in an average of just 3 to 5 minutes.

The vulnerability exploits microarchitectural flaws to bypass the speculative execution mechanisms built into modern CPUs. Attackers can leverage this technique to extract sensitive kernel memory data, specifically targeting credentials that could compromise the entire operating system.

Hardware vendors and software maintainers are currently rolling out additional mitigations and patches to address this risk. However, dealing with deep hardware-level vulnerabilities often sparks concerns about potential trade-offs involving system performance.

For IT professionals and system administrators in Uzbekistan managing enterprise servers and cloud infrastructure, this discovery highlights the ongoing importance of hardware security. Upgrading kernels and applying timely vendor patches remains critical to defending Linux environments against sophisticated side-channel attacks.

#Spectre v2#Linux#Intel#Kiberxavfsizlik#Xavfsizlik#BleepingComputer

Related articles