Blog 2020/06

Latest commentary, news and discoveries from Blue Frost Security.

Meltdown Reloaded: Breaking Windows KASLR by Leaking KVA Shadow Mappings

This blogpost explains how Meltdown can still be used to leak some specific kernel data and break Windows KASLR in the latest Windows versions, including "Windows 10" 20H1, despite the KVA Shadow mechanism introduced to mitigate Meltdown.