StackWarp
For more details on the discovery process and our findings, we refer to our research paper, which is published at USENIX Security 2026.
paper: stackwarpattack.com
github: github.com/cispa/StackW...
\cc Tristan Hornetz, @d-we.bsky.social, Fabian Thomas, @misc0110.bsky.social
15.01.2026 18:29
๐ 2
๐ 1
๐ฌ 1
๐ 0
Today we reveal StackWarp: a new CPU vulnerability exploiting a synchronization bug in AMDโs stack engine across Zen 1โ5 CPUs. It enables deterministic manipulation of Confidential VM's stack pointer, allowing RCE and privilege escalation via both control- and data-flow hijacking.
15.01.2026 18:27
๐ 31
๐ 13
๐ฌ 1
๐ 0
@ltrampert.bsky.social and I just gave a talk at Black Hat Asia showing how CSS can be abused to deanonymize you when opening an email!
cc: @blackhatevents.bsky.social #BHASIA25
03.04.2025 14:50
๐ 4
๐ 0
๐ฌ 1
๐ 0
Heading to Black Hat Asia now! @ltrampert.bsky.social and I will give a briefing about deanonymizing users not only on the web but also in their email clients! #bhasia
30.03.2025 18:33
๐ 4
๐ 0
๐ฌ 0
๐ 0
Just gave a keynote at #Ruhrsec about threat models, Side channels, fault attacks, how the evolve and how we should approach them...
21.02.2025 12:37
๐ 15
๐ 4
๐ฌ 0
๐ 0