BEGIN:VCALENDAR
VERSION:2.0
PRODID:Data::ICal 0.24
BEGIN:VEVENT
DESCRIPTION:   'Title: TEE.fail: Breaking Trusted Execution Environments vi
 a DDR5\n   Memory Bus Interposition\n   Tags: DEF CON Official Talk | Demo
  💻 | Exploit 🪲\n   When: Saturday\, Aug 8\, 17:30 - 17:59 PDT\n   Wh
 ere: LVCCW Level 1 Hall 3 1007 (Main Track 2) and DCTV-2 - [1]Map\n\n   De
 scription:\n\n   Trusted execution environments (TEEs) aim to offer strong
  privacy and\n   integrity guarantees even in the presence of root level a
 ttackers.\n   Recently there has been a pivotal shift in TEE deployment\, 
 moving TEEs\n   from enclaves running on PC-oriented hardware to confident
 ial virtual\n   machines executing on server-grade CPUs. Under the hood\, 
 this change\n   has also resulted in significant modifications to the unde
 rlying\n   memory encryption engine\, removing integrity guarantees as wel
 l as\n   protections against replay attacks. While Intel's and AMD's chang
 e in\n   TEE implementation is clearly significant and substantial\, most 
 TEE\n   deployments appear to fail to acknowledge the difference in securi
 ty\n   guarantees\, assuming a stronger security model than truly afforded
  by\n   the implementation. Thus\, in this talk we discuss the true protec
 tion\n   offered by Intel's and AMD's newest TEE offerings against entry-l
 evel\n   physical side-channel attacks. We show that bus interposition att
 acks\n   on DDR server memory can be constructed cheaply by hobbyists\, us
 ing\n   parts on e-commerce websites. With our bus interposer combined wit
 h\n   the weaker security model of server TEEs\, we will show a live demo 
 of\n   our ability to extract secret key material from machines in fully\n
    trusted status. Finally\, we demonstrate the implications of our\n   at
 tacks on real world deployments.\n\n   https://tee.fail Paper: https://tee
 .fail/files/paper.pdf Please see\n   our paper for references to prior wor
 k.\n\n   Speakers:Daniel Genkin\,Jalen Chuang\n\n   SpeakerBio:  Daniel Ge
 nkin\, Georgia Tech\n\n   Daniel Genkin is an Associate Professor at the S
 chool of Cybersecurity\n   and Privacy at Georgia Tech. Daniel’s researc
 h interests are in\n   hardware and system security\, with particular focu
 s on side channel\n   attacks and defenses. Daniel’s work has been recog
 nized by best\n   paper awards in multiple academic and industry venues\, 
 multiple Black\n   Hat Pwnie awards\, as well as covered by national and s
 cientific press.\n   Daniel has been part of the team performing the first
  analysis of\n   speculative and transient execution\, resulting in the di
 scovery of\n   Spectre\, Meltdown and follow ups. Finally\, he has a PhD i
 n Computer\n   Science from the Technion Israel’s Institute of Technolog
 y and is a\n   2024 Alfred P. Sloan Research Fellow.\n\n   SpeakerBio:  Ja
 len Chuang\, Georgia Tech\n\n   Jalen Chuang is a PhD student at the Hardw
 are Security Lab at Georgia\n   Tech. Jalen's research spans software fuzz
 ing\, CPU microarchitectural\n   side-channels\, and now focuses on truste
 d execution environments.\n   Outside of research\, Jalen is a regular CTF
  player and 2-time DEFCON\n   CTF finalist.\n\n   '\n\n   1. #LVCCW_Level1
 _Hall3\n\n\n
DTEND:20260809T005900Z
DTSTART:20260809T003000Z
LOCATION:DEF CON Talks - LVCCW Level 1 Hall 3 1007 (Main Track 2) and DCTV-
 2
SUMMARY:TEE.fail: Breaking Trusted Execution Environments via DDR5 Memory B
 us Interposition
END:VEVENT
END:VCALENDAR
