Browsing Posts in Sicurezza

Reading Time: 3 minutesThis year has started with the revelation of the Meltdown and Spectre vulnerabilities afftecting most of the (old and new) processors including Intel, AMD and ARM… but also others. In little less than one year we are still far from the solution because there are some patches, but those patches have serious performance impacts and sometimes are those patches require more and more time to become effective (instead of causing new issues).

Reading Time: 4 minutesNon ci sono dubbi che l’automazione sia una componente sempre più necessaria per buona parte dei processi IT e la “digital transformation” passa anche da lì. Che l’automazione possa essere fondamentale nell’ambito della sicurezza è qualcosa che molti stanno promuovendo a diversi livelli. Ad esempio, Red Hat ha mostrato in anteprima alcune integrazioni relative all’automazione di Ansible che consentiranno ai clienti di automatizzare ed orchestrare soluzioni di sicurezza enterprise, estendendo ulteriormente la propria leadership in ambito security.

Reading Time: 4 minutesVMware NSX-T Data Center is the next generation product that provides a scalable network virtualization and micro-segmentation platform for multi-hypervisor environments, container deployments, and native workloads. It has not yet become features parity with NSX-v, but the gap is closing faster and there are also several new features and capabilities available ONLY on NSX-T. And the product is growing faster: on June was release the NSX-T Data Center 2.2.0 and now there is the new NSX-T Data Center 2.3.0 release (see the release notes).

Reading Time: 9 minutesWith all those Meltdown, Spectre, Foreshadow, … bugs that affect several CPU, you may be interested in what can be the overall performance impact for all the related patches. There isn’t a simple answer, because it really varies by the processor vendor (Intel CPUs are more affected than AMD CPUs), probably also by CPU the family, for sure by the type of workloads (CPU bound workloads will be more affected, but it depends also on which instructions are used), … but also the type of environment.

Reading Time: 7 minutesThe L1 Terminal Fault (aka Foreshadow) bug is another speculative execution side channel attack that affects Intel Core processors and Intel Xeon processors only. For VMware vSphere, there are some patches available as described in this document: VMSA-2018-0020. All patches have been released on August, 14th 2018.

Reading Time: 5 minutesQuest’anno sarà ricordato, informaticamente parlando, come dei bug ai microprocessori. Si è iniziato subito ai primi di gennaio con gli annunci dei bug Spectre e Metldown ma poi si è continutato tutto l’anno. Prima per i goffi tentativi di sistemare i bug citati, ma poi anche per l’incombedere di nuove varianti dei bug. Si pensi che si è arrivati a Spectre V4 e V5! Ma è di pochi giorni l’annuncio di un nuovo bug. Di nuovo a livello hardware, di nuovo su processori presenti nel mercato da diversi anni, inclusi ultimi modelli (che ovviamente sono […]

Reading Time: 16 minutesThis is an article realized for StarWind blog and focused on the possible security threats in a virtual environment. See also the original post.

© 2025-2011 vInfrastructure Blog | Disclaimer & Copyright