https://roots.ec/publications/weber2023masc/
Indirect Meltdown: Building Novel Side-Channel Attacks from Transient Execution Attacks | Rootsec
The transient-execution attack Meltdown leaks sensitive information by transiently accessing inaccessible data during out-of-order execution. Although Meltdown...
side channelindirectmeltdownbuildingnovel
https://rootsec.nl/contact/
Contact us - Rootsec
Jun 6, 2025 - Bent u bezig met het verbeteren van uw cybersecurity? Aarzel niet en neem contact met ons op voor deskundige ondersteuning!
contact usrootsec
https://roots.ec/people/daniel-weber/
Daniel Weber | Rootsec
Hey, I am a PhD student researching in the field of microarchitectural attacks, such as side-channel and transient-execution attacks. I especially like to work...
daniel weberrootsec
https://roots.ec/talks/gerlach2023security/
A Security RISC? The State of Microarchitectural Attacks on RISC-V | Rootsec
Security research group focusing on microarchitectural side-channel attacks and system security. We investigate vulnerabilities in CPUs, operating systems, and...
the statemicroarchitectural attackssecurityrisc
https://roots.ec/teaching/
Teaching | Rootsec
We are teaching a variety of courses at Saarland University. Some courses are also offered at other universities. The courses are usually taught in English,...
teachingrootsec
https://roots.ec/
Rootsec
Our research group at the CISPA Helmholtz Center for Information Security is working on the low-level security of modern computer systems, focusing on …
rootsec
https://roots.ec/publications/schwarzl2022dpi/
Robust and Scalable Process Isolation against Spectre in the Cloud | Rootsec
In the quest for efficiency and performance, edge-computing providers replace process isolation with sandboxes, to support a high number of tenants per...
in the cloudscalable processrobustisolation
https://rootsec.nl/diensten/social-engineering-assessment/
Social Engineering Assessment - Rootsec
Beveiliging gaat verder dan technologie; de menselijke factor blijft een van de grootste risico's. Met onze Social Engineering Assessment testen
social engineering assessmentrootsec
https://rootsec.nl/diensten/red-teaming/
Red Team Operations - Rootsec
Test de grenzen van je cybersecurity met een realistische aanvalssimulatie. Ontdek hoe jouw systemen, teams en protocollen standhouden tegen een Red Team
red team operationsrootsec
https://rootsec.nl/blog/
Rootsec Blog - Rootsec
Jun 6, 2025 - Ontdek Rootsec’s Blog voor Uitgebreide Cybersecurity Inzichten. Verdiep je in onze uitgebreide artikelen en rapporten om op de hoogte
rootsecblog
https://roots.ec/people/lukas-gerlach/
Lukas Gerlach | Rootsec
Hello, there. Im a PhD at the RootSec lab doing research on a wide range of topics related to microarchitecture.
lukas gerlachrootsec
https://roots.ec/publications/weber2026trevex/
TREVEX: A Black-Box Detection Framework For Data-Flow Transient Execution Vulnerabilities | Rootsec
# Abstract Transient execution attacks continue to pose serious security risks, even years after their initial discovery in the form of Meltdown and Spectre. …
a blackfor data
https://roots.ec/publications/kogler2023collidepower/
Collide+Power: Leaking Inaccessible Data with Software-based Power Side Channels | Rootsec
Differential Power Analysis (DPA) measures single-bit differences between data values used in computer systems by statistical analysis of power traces. In this...
side channelscollidepowerleakinginaccessible
https://roots.ec/publications/
Publications | Rootsec
Security research group focusing on microarchitectural side-channel attacks and system security. We investigate vulnerabilities in CPUs, operating systems, and...
publicationsrootsec
https://roots.ec/publications/rokicki2022portcontention/
CPU Port Contention Without SMT | Rootsec
CPU port contention has been used in the last years as a stateless side channel to perform side-channel attacks and transient execution attacks. One drawback...
cpuportcontentionwithoutsmt
https://roots.ec/publications/lipp2021platypus/
PLATYPUS: Software-based Power Side-Channel Attacks on x86 | Rootsec
Power side-channel attacks exploit variations in power consumption to extract secrets from a device, e.g., cryptographic keys. Prior attacks typically required...
side channelplatypussoftwarebasedpower
https://roots.ec/people/
People | Rootsec
Security research group focusing on microarchitectural side-channel attacks and system security. We investigate vulnerabilities in CPUs, operating systems, and...
peoplerootsec
https://roots.ec/publications/gerlach2025compiler/
Do Compilers Break Constant-time Guarantees? | Rootsec
Side-channel attacks are a significant concern for the implementation of cryptographic algorithms. Data-oblivious programming is a discipline that helps …
constant timecompilersbreakguaranteesrootsec
https://roots.ec/publications/gerlach2024hash/
Efficient and Generic Microarchitectural Hash-Function Recovery | Rootsec
Modern CPUs use a variety of undocumented microarchitectural hash functions to efficiently distribute data within microarchitectural structures such as caches....
hash functionefficientgenericrecoveryrootsec
https://rootsec.nl/privacy/
Privacy Policy - Rootsec
Mar 27, 2025 - Laatst bijgewerkt: 27 maart 2025KvK-nummer: 65423763
privacy policyrootsec
https://roots.ec/talks/schwarz2022cpu/
CPU Fuzzing for Discovering Hardware-caused Information Leakage | Rootsec
Security research group focusing on microarchitectural side-channel attacks and system security. We investigate vulnerabilities in CPUs, operating systems, and...
information leakagecpufuzzingdiscoveringhardware
https://rootsec.nl/blog/page/20/
Rootsec Blog - Rootsec
Jun 6, 2025 - Ontdek Rootsec’s Blog voor Uitgebreide Cybersecurity Inzichten. Verdiep je in onze uitgebreide artikelen en rapporten om op de hoogte
rootsecblog
https://roots.ec/publications/schwarzl2023compression/
Practical Timing Side-Channel Attacks on Memory Compression | Rootsec
Compression algorithms are widely used as they save memory without losing data. However, elimination of redundant symbols and sequences in data leads to a …
side channelon memorypracticaltimingattacks
https://roots.ec/talks/schwarz2026thcon/
Your CPU Is the New Software: Exploiting Architectural Bugs at Hardware Speed | Rootsec
Modern computer security has long assumed that software contains bugs and hardware is secure. Over the past decade, this assumption has steadily eroded. First,...
is thenew software
https://rootsec.nl/diensten/penetratietest/
Penetratietesten - Rootsec
Bescherm uw digitale omgeving met Rootsec’s geavanceerde penetratietesten. Onze ervaren specialisten sporen kwetsbaarheden op
penetratietestenrootsec
https://roots.ec/thesis/
Thesis | Rootsec
You are welcome to write a thesis at our group. We are always looking for motivated students that want to write a Bachelor’s or Master’s thesis. …
thesisrootsec
https://roots.ec/talks/trampert2025beauty/
Beauty at a Cost: Privacy Implications of CSS on the Web and in Emails | Rootsec
Security research group focusing on microarchitectural side-channel attacks and system security. We investigate vulnerabilities in CPUs, operating systems, and...
on the web
https://rootsec.nl/
Homepage - Rootsec
Jan 5, 2026 - Bescherm uw organisatie met geavanceerde en op maat gemaakte cybersecurity-oplossingen die u beschermen tegen de meest complexe...
homepagerootsec
https://roots.ec/publications/hornetz2026tdxray/
TDXRay: Microarchitectural Side-Channel Analysis of Intel TDX for Real-World Workloads | Rootsec
# Abstract Confidential computing with VM-based trusted execution environments (TEEs) promises to protect code and data from a privileged cloud operator, …
side channelintel tdx
https://roots.ec/publications/easdon2022rapid/
Rapid Prototyping for Microarchitectural Attacks | Rootsec
In recent years, microarchitectural attacks have been demonstrated to be a powerful attack class. However, as our empirical analysis shows, there are numerous …
rapid prototypingmicroarchitectural attacksrootsec
https://roots.ec/people/ruiyi-zhang/
Ruiyi Zhang | Rootsec
Hi there! I am a PhD student at the RootSec lab. My research explores the security of microarchitecture and TEEs. I am a big fan of Coke Zero.
ruiyi zhangrootsec
https://roots.ec/talks/gerlach2023rowhammer/
Rowhammer Revisited: From Exploration to Exploitation and Mitigation | Rootsec
Security research group focusing on microarchitectural side-channel attacks and system security. We investigate vulnerabilities in CPUs, operating systems, and...
rowhammerrevisitedexplorationexploitationmitigation
https://roots.ec/publications/trampert2025peripheralinstinct/
Peripheral Instinct: How External Devices Breach Browser Sandboxes | Rootsec
Browser APIs such as WebHID, WebUSB, Web Serial, and Web MIDI enable web applications to interact directly with external devices. The support of such APIs in …
external devicesperipheralinstinctbreachbrowser
https://rootsec.nl/vacatures/
Werken bij Rootsec
Jun 11, 2025 - Stap in een team van cybersecurityprofessionals dat bedrijven beschermt tegen steeds slimmer wordende cyberdreigingen. Werken bij Rootsec
werken bij rootsec
https://roots.ec/blog/
Blog | Rootsec
Welcome to the Rootsec Research Group blog. Here we share insights, experiences, and deep dives into security research topics.
blogrootsec
https://rootsec.nl/disclaimer/
Disclaimer - Rootsec
Mar 27, 2025 - DISCLAIMER – ROOTSEC B.V.
disclaimerrootsec
https://roots.ec/people/lorenz-hetterich/
Lorenz Hetterich | Rootsec
Hi! I am a PhD student at Saarland University working for the CISPA Helmholtz Center for Information Security under the supervision of Dr. Michael Schwarz. My...
lorenz hetterichrootsec
https://roots.ec/people/leon-trampert/
Leon Trampert | Rootsec
Hey! I am a PhD student at Saarland University working for the CISPA Helmholtz Center for Information Security under the supervision of Dr. Michael Schwarz and...
leon trampertrootsec
https://roots.ec/talks/schwarz2023unsichere/
Unsichere Webseiten Erkennen | Rootsec
Security research group focusing on microarchitectural side-channel attacks and system security. We investigate vulnerabilities in CPUs, operating systems, and...
unsichere webseiten erkennenrootsec
https://roots.ec/talks/schwarz2026nancy/
12 000 Fehler später: Warum Cybersicherheit Forschung braucht | Rootsec
Unsere digitale Infrastruktur basiert auf extrem komplexer Software und Hardware mit Milliarden Zeilen Code - und damit zwangslaufig vielen Fehlern. Diese …
fehlerwarumcybersicherheitforschungrootsec
https://roots.ec/blog/stackwarp/
StackWarp: Exploiting Stack Layout Vulnerabilities in Modern Processors | Rootsec
Jan 14, 2026 - We are disclosing a novel CPU bug affecting AMD Zen 1-5 microarchitectures.
stack layoutstackwarpexploitingvulnerabilitiesmodern