How The RIDL CPU Vulnerability Was Found @LiveOverflow
How The RIDL CPU Vulnerability Was Found  @LiveOverflow
Uploaded August 2022 | Updated September 2026, 2 weeks ago
In this video we explore the basic ideas behind CPU vulnerabilities and have a closer look at RIDL.
This video is sponsored by Intel and their Project Circuit Breaker: projectcircuitbreaker.com

LEARN ON HEXTREE (ad)
Learn hacking on Hextree: hextree.io
Watch this video and more on Hextree: app.hextree.io/courses/yt-hardware-hacking/hardware-attacks
Join the Hextree Discord: discord.gg/xgQpCQCpvy

How to Benchmark Code Execution Times: intel.com/content/dam/www/public/us/en/documents/white-papers/ia-32-ia-64-benchmark-code-execution-paper.pdf
Anders Fogh: https://cyber.wtf/2017/07/28/negative-result-reading-kernel-memory-from-user-mode/
Speculose: arxiv.org/abs/1801.04084
RIDL Paper: mdsattacks.com/files/ridl.pdf
Foreshadow PoC: github.com/gregvish/l1tf-poc/blob/master/doit.c
Sebastian Österlund: https://osterlund.xyz/

CHAPTERS
00:00 - Intro & Motivation
00:57 - Concept #1: CPU Caches
01:57 - Measure Cache Access Time with rdtscp
05:00 - Concept #2: Out-of-order Execution
06:11 - CPU Pipelining
07:13 - Out-of-order Execution Example
09:19 - CPU Caching + Out-of-order Execution = Attack Idea!!
10:33 - Negative Result: Reading Kernel Memory From User Mode
13:45 - Pandoras Box
14:23 - Interview with Sebastian Österlund
17:24 - Accidental RIDL Discovery
19:31 - NULL Pointer Bug
21:50 - Investigating Root Cause
23:28 - Conclusion
24:24 - Outro

SUPPORT
Per video: patreon.com/join/liveoverflow
Per month: youtube.com/channel/UClcE-kVhqyiHCcjYwcpfj9w/join
Buy my handwriting font (ad): shop.liveoverflow.com

WATCH, FOLLOW & READ
Second channel: youtube.com/LiveUnderflow
Twitch: twitch.tv/LiveOverflow
Twitter: twitter.com/LiveOverflow
Instagram: instagram.com/LiveOverflow
TikTok: tiktok.com/@liveoverflow_
LiveOverflow blog: liveoverflow.com
Hextree blog (ad): hextree.io/blog

#RIDL #CPUSecurity #LiveOverflow

(ad) LiveOverflow YouTube channel is supported by advertisement and product placement.
How The RIDL CPU Vulnerability Was FoundFinding Player and Camera Position for Fly Hack - Pwn Adventure 3Learn Fault Injection at DEF CON 2026Finding 0day in Apache APISIX During CTF (CVE-2022-24112)My Life in Short/Shirt Stories - The Time I Learned PenSpinning (~2007-2009) - Shirt Stories #1Hacking My Instagram AccountUnderstanding C Pointer Magic Arithmetic | Ep. 07
LiveOverflow |

How The RIDL CPU Vulnerability Was Found

SHARE TO X SHARE TO REDDIT SHARE TO FACEBOOK WALLPAPER