• News/
  • https://www.theregister.com/2025/05/13/intel_spectre_race_condition/

Intel data-leaking Spectre defenses scared off once again

The Register
·
Thomas Claburn
·
Published May 13, 2025
·
Updated

Updated Researchers at ETH Zurich in Switzerland have found a way around Intel's defenses against Spectre, a family of data-leaking flaws in the x86 giant's processor designs that simply won't die. Sandro Rüegge, Johannes Wikner, and Kaveh Razavi have identified a class of security vulnerabilities they're calling Branch Predictor Race Conditions (BPRC), which they describe in a paper [PDF] scheduled to be presented at USENIX Security 2025 and Black Hat USA 2025 later this year. Spectre refers to a set of hardware-level processor vulnerabilities identified in 2018 that can be used to break the security isolation between software. It does this by exploiting speculative execution - a performance optimization technique that involves the CPU anticipating future code paths (also known as branch prediction) and executing down those paths before they're actually needed. In practice, this all means malware running on a machine, or a rogue logged-in user, can potentially abuse Spectre flaws within vulnerable Intel processors to snoop on and steal data – such as passwords, keys, and other secrets – from other running programs or even from the kernel, the heart of the operating system itself, or from adjacent virtual machines on a host, depending on the circumstances. In terms of real-world risk, we haven't seen the Spectre family exploited publicly in a significant way, yet. There are several Spectre variants. One of these, Spectre v2, enables an attacker to manipulate indirect branch p...

Read full article

Affected Software

9 affected components
Intel x86 processors
Intel 9th generation processors
Intel Coffee Lake Refresh processors
Intel 7th generation processors
Intel Kaby Lake processors
Intel Alder Lake processors
Intel Rocket Lake processors
Intel Xeon processors
Intel Processor
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the main topic of this article?

The article discusses new research revealing a method to bypass Intel's defenses against the Spectre vulnerabilities in their processors.

2

What security implications are discussed in the article?

The article highlights that Intel's ongoing challenges in defending against the Spectre vulnerabilities raise concerns about data security in their processor designs.

3

What products or software are affected by the vulnerabilities mentioned?

The affected products include various Intel processors such as the 9th generation, Coffee Lake Refresh, 7th generation, Kaby Lake, Alder Lake, Rocket Lake, and Xeon series.

4

Who conducted the research that found the new vulnerability method?

The research was conducted by researchers at ETH Zurich in Switzerland.

5

What does the ongoing vulnerability of Intel processors indicate about their security architecture?

The ongoing vulnerabilities suggest that Intel's security architecture may need significant improvement to adequately protect against sophisticated exploitation techniques.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203