Intel says its next-gen laptop CPUs protect against ‘common malware attacks’

(Image credit: Intel)

Intel bore the brunt of criticism for a series of side-channel vulnerabilities affecting decades of processors, namely Spectre and Meltdown, along with subsequent software patches that can negatively impact performance in some instances. In partial response to this, Intel is working on hardware-level safeguards for its future CPUs. Starting with Tiger Lake, we will see one such implementation.

The new security capability is called Intel Control-Flow Enforcement Technology (CET). As the name implies, it is intended to prevent hackers from leveraging control-flow hijacking attacks, which essentially entails a wide range of malware that abuses legitimate code. According to Intel, CET will "help protect against common malware attack methods that have been a challenge to mitigate with software alone."

Intel offers a technical breakdown of the technology at play, but in plain English, CET is designed to button up security holes in how its CPUs handle the flow of data in and out of memory.

"As more proactive protections are built into the Windows OS, attackers are shifting their efforts to exploit memory safety vulnerabilities by hijacking the integrity of the control flow," said David Weston, director of Enterprise and OS Security at Microsoft. "As an opt-in feature in Windows 10, Microsoft has worked with Intel to offer hardware-enforced stack protection that builds on the extensive exploit protection built into Windows 10 to enforce code integrity as well as terminate any malicious code."

Though CET is part of the Tiger Lake microarchitecture, it also requires support from the OS. In Windows 10, support for CET is called "Hardware-enforced Stack Protection," and it is currently being tested in the Windows Insider program.

How important is this? Intel points to a Trend Micro report indicating that nearly two-thirds of the 1,097 zero-day vulnerabilities disclosed from 2019 to today were related to memory safety.

"These malware types target operating systems (OS), browsers, readers and many other applications. It takes deep hardware integration at the foundation to deliver effective security features with minimal performance impact," Intel says.

Tiger Lake will be the first CPU series to feature CET, but not the last. Intel says CET will also ship in future desktop and server platforms as well.

Paul Lilly

Paul has been playing PC games and raking his knuckles on computer hardware since the Commodore 64. He does not have any tattoos, but thinks it would be cool to get one that reads LOAD"*",8,1. In his off time, he rides motorcycles and wrestles alligators (only one of those is true).

Latest in Processors
Texas Instruments MSPM0C1104 tiny chip
World's smallest microcontroller looks like I could easily accidentally inhale it but packs a genuine 32-bit Arm CPU
Intel engineers inspect a lithography machine
Finally some good vibes from Intel as stock jumps 15% on new CEO hire and Arizona fab celebrates 'Eagle has landed' moment for its 18A node
A photo of an Intel Core Ultra 9 285K processor surrounded by DDR5 memory sticks from Corsair, Kingston, and Lexar
Fresh leak suggests Intel's on-again-off-again Arrow Lake CPU refresh is back on the menu (boys)
 photo shows a factory tool that places lids on data center system-on-chips at an Intel fab in Chandler, Arizona, in December 2023. In February 2024, Intel Corporation launched Intel Foundry as the world’s first systems foundry for the AI era, delivering leadership in technology, resiliency and sustainability.
Return of the gigahertz wars: New Chinese transistor uses bismuth instead of silicon to potentially sock it to Intel and TSMC with 40% more speed
 photo shows a factory tool that places lids on data center system-on-chips at an Intel fab in Chandler, Arizona, in December 2023. In February 2024, Intel Corporation launched Intel Foundry as the world’s first systems foundry for the AI era, delivering leadership in technology, resiliency and sustainability.
So, wait, now TSMC is supposedly pitching a joint venture with Nvidia, AMD and Broadcom to run Intel's ailing chip fabs?
Pipboy holds up an open padlock.
A BIOS update could be all that's stopping you or someone else from jailbreaking your old AMD CPU
Latest in News
Storm trooper hero
Another live service shooter is getting shut down, this time before it even launched on Steam
Possibility Space concept art.
Possibility Space owners sue NetEase for $900 million over allegations it spread 'false and defamatory rumors' of fraud at the studio that ultimately forced it to close
Valve soldier man on a pc.
2024 was Steam's 'best year ever' of users buying newly released games—but I wouldn't celebrate the end of the forever game era just yet
Money money money.
Valve tracked 1.7 million Steam users who joined in 2023 to see if they stuck around—they did, and they spent $93 million
Closeup of the new Copilot key coming to Windows 11 PC keyboards
Microsoft co-authored paper suggests the regular use of gen-AI can leave users with a 'diminished skill for independent problem-solving' and at least one AI model seems to agree
A lolporrit squeals in excitement while being driven in a moon buggie in Final Fantasy 14: Dawntrail, patch 7.2.
Final Fantasy 14 patch 7.2's trailer has me finally hyped to get stuck back in—and to go to the moon and pilot some mechs, because why not