#esorics2026 #confidentialcomputing #amd #security #cloud #computing #cloudcomputing
SNeela
@vmcall@infosec.exchange
PhD student working on system security, side-channel security, and CPU security at @isec_tugraz, TU Graz, Austria. Hardware equivalent of a Sticky Note
Probably will talk about #linux, #security, #systems, and #filmphotography. Oh, and also chonk the #plushtodon Opinions posted here are my own.
infosec.exchange
I'm happy to announce our work has been accepted at ESORICS 2026, going to be held at Rome, Italy in September later this year!
"A Systematic Look at Quality-of-Service Feature Effects on Side Channels in AMD SEV-SNP"
In our work, we show that AMD CPUs' Quality of Service features introduce and amplify side channels, especially concerning in the confidential computing / trusted execution paradigm of computing.
We show that a malicious hypervisor can use allocation and monitoring features to leak and amplify what's going on in an AMD SEV-SNP confidential VM. The hypervisor can mount keystroke detection attacks, website fingerprinting attacks, Bleichenbacher attacks on RSA, and covert channels.
We reported our findings to AMD, who said that "side channels are not in their threat model for SEV-SNP"... 🙂.
I have a blog write up here (there's a logo of a cat wearing a business tie - no AI): https://snee.la/posts/amd-qos-side-channels/
You can read the paper at: https://snee.la/pdf/pubs/amd-qos-side-channels.pdf
Thanks to Carina Fiedler, @Rayiizzz@infosec.exchange, @supersingular@chaos.social, @misc0110@infosec.exchange and @lavados@infosec.exchange for the fun collaboration!
#esorics2026 #confidentialcomputing #amd #security #cloud #computing #cloudcomputing
#esorics2026 #confidentialcomputing #amd #security #cloud #computing #cloudcomputing