Your SSD might be subjected to Over-provisioning malware

Researchers in Korea discovered a weakness in SSDs that allows the malware to infect an SSD’s empty over-provisioning partition directly. This makes the malware practically immune to security countermeasures, according to BleepingComputer.

Over-provisioning is a function found in all current SSDs that extends the SSD’s built-in NAND storage life and improves its performance. Overprovisioning results in a lot of vacant storage space. However, it allows the SSD to ensure that data is spread evenly across all NAND cells by shuffling data to the over-provisioning pool when needed.

While the operating system — and hence anti-virus solutions — are intended to be unable to reach this region, this new malware can infiltrate it and utilize it as a base of operations. Two attacks based on the over-provisioned space were designed by Korean academics at Korea University in Seoul. The first shows a vulnerability in the SSD that targets invalid data (data that has been erased in the OS but not physically cleaned).

To get access to more potentially sensitive data, the attacker can increase the size of the over-provisioned data pool to provide the operating system with more space. As a result, when a user tries to erase more data from the SSD, the excess data stays physically intact.

To tackle the first assault scenario, the researchers recommend designing a pseudo-erase method that physically deletes data on an SSD without harming real-world performance.

What is Malware Signal Hero refresh Your SSD might be subjected to Over-provisioning malware

To fight the second assault type, it is advised that a new monitoring system be implemented that can closely monitor the over-provisioned size of the SSDs in real-time. Furthermore, unauthorized access to SSD management tools that can change over-provisioned sizes should be protected by more robust security mechanisms.

Thankfully, these techniques were devised by researchers rather than being found as a result of a real-world attack. However, an attack like this might very well occur, thus SSD makers should begin correcting these security flaws as soon as possible before someone exploits them.

also read:

Intel surprises all by re-designing the stock cooler of its Alder Lake CPUs

Source

LEAVE A REPLY

Please enter your comment!
Please enter your name here

This site uses Akismet to reduce spam. Learn how your comment data is processed.

More like this

Lexar ARMOR 700 Portable SSD: The Best Storage Choice Now in India

Lexar ARMOR 700 Portable SSD: The Best Storage Choice...

Lexar, a worldwide frontrunner in storage technology, has started selling the ARMOR 700 Portable SSD in India—one...

Samsung 9100 PRO Gen5 SSD Unveiled with Up to...

Samsung has introduced its latest 9100 PRO Gen5 SSDs, offering blazing-fast speeds and up to 8TB of...
(Windows OS) How to Transfer SSD to New SSD Without Data Loss?

How to Transfer SSD to New SSD: Complete Windows...

The solid-state drive (SSD) has become very popular among computer users because it's faster and more durable...

The Best App Lockers for Android You Should Know...

Best App Lockers for Android: The Ultimate Guide In the realm of technology, app lockers play a crucial...

How much does Meta spend on Mark Zuckerberg’s security...

The security allowance for Mark Zuckerberg and his family has been doubled by Meta Platforms Inc., which justifies...

LATEST NEWS

Samantha Ruth Prabhu: A Regal Celebration of 15 Years in Indian Cinema

Samantha Ruth Prabhu, a name synonymous with elegance and talent in the Indian film industry, recently marked a significant milestone—15 glorious years in cinema....

Mira Kapoor: Where Comfort Meets Couture – A Fashion Manifesto

In the grand theater of fashion, some performers don’t just wear clothes – they tell stories. Mira Kapoor is one such storyteller, a maestro...

Oscars 2025: From Cynthia Erivo to Kylie Jenner Most Stunning Red Carpet Fashion Moments Revealed

The 97th Academy Awards or Oscars 2025 transformed the red carpet into a canvas of artistic expression, where fashion became more than clothing –...

XMG NEO 16 Pre-Orders: Ryzen 9 9955HX3D, RTX 5090 Powerhouse

Gaming enthusiasts, get ready! XMG has officially opened pre-orders for its latest NEO 16 gaming laptop, featuring cutting-edge Intel and AMD processors, including the...

Featured