Meltdown/Spectre – Related Resources

[This was originally a one-off blog article here: now  expanded and to be maintained (when time allows) here as a ‘live’ resource, since the issue isn’t likely to go away immediately and applies across a wide range of platforms. However, I don’t promise any in-depth commentary: rather, links to articles and resources that might be useful.]

General resources

Anti-Malware/security product resources

Kevin Beaumont’s AV vendor response spreadsheet

ESET resources

Wait, don’t go! This resource is not run for or by ESET, and of course lots of other security companies are providing sound information on these issues. However, as I’m on several ESET mailing lists (I work with the company as a consultant) I see a wider range of material from there than I do from other companies. If time allows, I’ll try to include vendor info from other major companies too.

G-Data resources

Inside Meltdown and Spectre: Interview with Anders Fogh

Checkpoint resources

How The Spectre/Meltdown Vulnerabilities Work

 Apple-Related

Google/Android-Related

IBM

The Register: IBM’s complete Meltdown fix won’t land until mid-February – POWER CPU patches available now or next week, AIX and i OS fixes are more than a month off

Intel

AMD

Microsoft/Windows

ICS/SCADA

Webkit

Webkit.org: What Spectre and Meltdown Mean For WebKit

PoCs

David Harley