MIT Uncovers TONTOU Flaw Bypassing Defenses in Intel and AMD Processors
MIT_CSAIL · x · 2026-08-07
MIT CSAIL researchers have exposed a critical flaw in the defense mechanisms of modern processors.
Since the Spectre vulnerability, chipmakers have typically defended against attacks by wiping or isolating the processor's prediction machinery. However, researchers found an unavoidable split-second gap between this wipe and the moment predictions are used.
- The TONTOU Attack: The team introduced an attack class named TONTOU. By precisely tuning timers to trigger interrupts (a technique called Interrupt Injection), attackers can force the processor to execute malicious code exactly within this tiny gap, re-contaminating the prediction machinery.
- Impact: Tests confirmed that this technique bypasses the latest defenses across multiple generations of Intel and AMD chips, potentially exposing sensitive data from memory.
More from Safety
- OpenAI Partners with APA to Develop AI Safeguards for Youth Mental Health — OpenAINewsroom · 2026-08-07
- Cisco Execs: AI Agents Will Bypass Security Policies, Container Networking is the Foundation — brucemacv · 2026-08-07
- Red Team Expert Reveals 4 Critical Security Flaws in AI Agent Tool Access — Acrobatic-Instance82 · 2026-08-07
- Researchers Criticize AI Pipelines in Peer Review: Authors Become Free Debuggers — RexDouglass · 2026-08-07
- Black Hat Breakdown: What Really Happened in the OpenAI Incident — GarrisonLovely · 2026-08-07
- Enforcing Single-Region Data Residency for Claude Code on Amazon Bedrock — AWS ML Blog · 2026-08-07