Researchers from the Vrije Universiteit Amsterdam have revealed a new side-channel attack, named SLAM, which can leak sensitive kernel memory data from current and upcoming CPUs from Intel, AMD, and Arm. The attack exploits a feature in these systems designed to improve security, ironically worsening it. Intel will be providing software guidance to counteract this prior to the release of future processors. Among impacted CPUs are upcoming models from AMD and Arm and existing AMD models vulnerable to CVE-2020-12965.

The NCSC wants developers to get serious on software security
The NCSC’s new Software Security Code of Practice has been praised by cyber professionals as a significant advancement in enhancing software supply chain security.