What is Rowhammer and Why Should You Care?


What is rowhammer? It’s not new, rowhammer was discussed in the “Flipping Bits in Memory Without Accessing Them: An Experimental Study of DRAM Disturbance Errors” paper published in 2014. But until now exploiting it required software to be installed on the victim computer. Google’s Project Zero has just proven that rowhammer exploits can be executed using nothing more than JavaScript. This is a devastating finding, proving that any computer vulnerable to rowhammer attacks – regardless of operating system or software-based protection – can be compromised.

But what IS rowhammer?
Unlike other exploits, rowhammer is a physical compromise. It uses an electrical vulnerability in densely packed DRAM chips to cause neighboring bits to flip. An attacker and change bits in your machine without directly accessing them. Wikipedia’s article on rowhammer does an excellent job of explaining it in a way that average computer users – like us – can get an idea of how it works. You can read that article here.

Why rowhammer has become a very big deal
With the discovery of a successful JavaScript based attack, rowhammer could be exploited using nothing more than JavaScript within a website.

Is there any hope?
The immediate outlook in dealing with this vulnerability is grim. Steps can be taken but they are hacky at best. Slowing JavaScript would help, but browser developers won’t likely willingly harm their software’s performance. Disabling JavaScript would protect you, but that would be very painful considering a vast majority of the web relies heavily on JavaScript to provide responsive and interactive user interfaces. To truly address the issue would require changing out the vulnerable chips, or possibly a bios modification which is beyond most user’s ability.

Rowhammer is a vulnerability that is worth staying informed on.


Adaptive or Responsive


Building a website that works well and looks sharp on numerous devices is critical. Your visitors aren’t chained to a desk, they will be accessing your website from desktops, phones, notepads and laptops. Each device has different screen shapes and different resolutions and they will be interacting with your site in many different ways. There are…

Will Your Next Device Be Even Smaller and Faster?


IBM, in collaboration with Samsung and others has successfully cut the size of transistors in half. The most popular transistor in use today is about 14 nanometers (1 nanometer = 1 billionth of a meter), IBM’s chip contains transistors that are 7 nanometers across. These transistors are slightly larger than a strand of DNA! This equates…

What in the World Is Cruft – and Why You Hate It?


Cruft, in the development world is defined as: ‘badly designed, unnecessarily complicated, or unwanted code or software.’ In web design it can refer to all the junk – not to mention http posts – one has to wade through to get to an online article – as in the case explored in this Telerik article. How…

Can Windows 10 Save the Windows Phone?

The flag is cool. I'll admit that, if nothing else.

Due to the faultering sales of the Windows Phone, Microsoft has decided to make major cuts in its phone related departments. But according to Forbes this doesn’t necessarily signal an end to the company’s foray into the mobile market. It is entirely possible that Microsoft is gearing up to streamline its efforts, relying heavily on…

What Happened to the NYSE?


Earlier today everything blew up. Multiple major companies suffered from crippling ‘technical glitches’ this morning. The affected companies include: New York Stock Exchange The Wall Street Journal United Airlines   United Airlines suffered from problems with its reservation system and made an apology to travelers. The NYSE was forced to halt trading until 3:15pm.  …

How We Can Secure Your Business

Rhyno Only_Shadow

Businesses today face many threats to their networks and the critical files and data contained within. Malicious software such as viruses, malware, ransomware, and trojans are out there prowling around for susceptible systems to wreak havoc upon. Let RHYNONetworks help you protect your company’s assets!   Viruses Viruses can render your business computers inoperable, or…

Crazy Web/Internet Hacks

Backlit keyboard

Hacks against websites or networks are very serious, but let’s take a moment to look at some of the dumbest hacks, craziest or most famous hacks that have been perpetrated against people, companies and networks.   Famous Hacks This list is of course far from exhaustive. But here are some highlights in the history of hacking: Arpanet…

Making Your Websites Look Fresh and New


No one wants their company website to look dated. We want our sites to be cutting edge and fresh in appearance and usability. What is it about a website that makes it ‘fresh’ or ‘cutting edge’? Elegant Themes has assembled a list of some of the trends that are popular in today’s websites. Some of…

Is Your Company Being Blocked?


If you pay for, or rely upon ads placed on websites or within apps, ad-blocking software is hurting you. The current estimates are over 200 million users globally are utilizing ad blocking software. This amounts to very real loss for companies that rely on ad revenues and the companies relying on their ads to generate…