7 January 2018

By popular demand!

Meltdown and Spectre are the recently-publicized exploits that take advantage of flaws in modern processors.

These flaws are big news, but what’s the actual scoop?

It turns out that they ARE a big deal, but with a few important caveats…

Since the exploits themselves are so technically complicated, I have tried to explain them in a simplified way without sacrificing actual useful details.

That way, you can make up your own mind as to whether or not you should run for the hills!

The technical papers:

Other excellent resources:

So there you have it.

8 thoughts on “Meltdown & Spectre: DO NOT PANIC! Yet.

  • 7 January 2018 at 19:19

    Is it true that they are going to be patching Bios as well have you heard anything o that?

    • 7 January 2018 at 19:49

      Yeah, I’ve heard that, but I haven’t seen any firmware updates for anything just yet. That’s WAAAAY less reliable of a way to patch though since most people are not comfortable updating their BIOS/UEFI… unless they’re using something like HP Support Assistant where it sort of does everything for you automatically. So, we’ll see what happens on that front.

  • 9 January 2018 at 11:58

    Nowadays, UEFI updates are pretty straightforward and for desktop computer, most OEM offers comprehensive tools to update safely under windows and then just restart, with 2 to 3 clicks at most…
    For old BIOS motherboard, many users will be scared to flash a BIOS at boot or with command lines, but that’s the only way to mitigate Spectre for now.

    • 9 January 2018 at 12:35

      Aha. Good point!

      I haven’t actually bought a desktop computer in… about 20 years. Always build my own.

      And as for laptops, the last Acer I had for example still required manually running an update, and they actually warned against doing BIOS updates unless it was recommended by their support team. Then again, that was back in the BIOS days, and things generally are much better now with UEFI as you note.

      Thanks for that!

  • 4 February 2018 at 23:38

