lvi-lfb-attack-poc icon indicating copy to clipboard operation
lvi-lfb-attack-poc copied to clipboard

This repository contains the sources and documentation for the LVI-LFB Control Flow Hijacking attack PoC (CVE-2020-0551)

PoC for the LVI-LFB Control Flow Hijacking attack (CVE-2020-0551)

This repository holds the sources for the LVI-LFB Control Flow Hijacking attack PoC.

Contents

  • lvi-cfh-poc - hijack the control flow of another process via line-fill buffer spraying
  • whitepaper

Prerequisites

  1. Visual Studio 2015
  2. A vulnerable Intel CPU

Authors

  • Andrei Vlad LUȚAȘ
  • Dan Horea LUȚAȘ

Additional resources

  • Bitdefender blog post: https://businessinsights.bitdefender.com/bitdefender-researchers-discover-new-side-channel-attack
  • Official LVI web-site - https://lviattack.eu
  • Intel Security Advisory - https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00334.html
  • Intel Deep Dive - https://software.intel.com/security-software-guidance/insights/deep-dive-load-value-injection