Security: Cloud Meltdown, or Is It?

Do Meltdown and Spectre invalidate the cloud? Do modern security issues invalidate the cloud? Does lack of provable security invalidate the cloud? But isn’t it provable? These are pretty strong statements, but the latest Spectre patch microcode recall for certain CPUs is starting to make some companies rethink their use of the cloud. What type …

When IT Comes Apart: A Case of Failure

What do you do when everything fails—not just typical application failure, but failure of more than one subsystem all at once? Recently, I had such a failure. The air-conditioning plant failed, and the new 10G switch failed, causing a loop that brought down the entire storage network. Then, the storage redundancy failed due to a …

Treasure Troves and Intel Speculative Execution

The January 3, 2018 Virtualization and Cloud Security Podcast covered two very important issues: the treasure troves used as bases for attacks and the Intel CPU speculative execution bug. The former allows people to access critical cloud and internal resources, while the later allows elevation of privileges to see and act upon data within the CPU …