Academic researchers have developed a new Rowhammer attack variant called Phoenix that can bypass advanced protection mechanisms in DDR5 memory chips from SK Hynix. This vulnerability enables attackers to flip memory bits, escalate privileges, and potentially control affected systems, with all tested DDR5 modules found vulnerable—highlighting the urgent need for enhanced security measures. #PhoenixAttack #SKHynixDDR5
Keypoints
- The Phoenix attack can flip bits in DDR5 memory chips to facilitate malicious activities.
- Researchers demonstrated that all tested DDR5 modules from Hynix are vulnerable to this attack.
- PHXevades Target Row Refresh (TRR) protections by targeting specific refresh intervals and activation slots.
- The attack can escalate privileges, intercept data, and compromise system security within minutes.
- Mitigation involves tripling DRAM refresh intervals, which may cause system instability.