Branch Privilege Injection: Compromising Spectre v2 Hardware Mitigations by Exploiting Branch Predictor Race Conditions. Rüegge, S., Wikner, J., & Razavi, K. In USENIX Security, August, 2025. Intel Bounty Reward, BlackHat USA
Paper
URL bibtex 194 downloads @inproceedings{rueegge_bprc_2025,
title = {{Branch Privilege Injection: Compromising Spectre v2 Hardware Mitigations by Exploiting Branch Predictor Race Conditions}},
url = {Paper=https://comsec-files.ethz.ch/papers/bprc_sec25.pdf URL=https://comsec.ethz.ch/bprc},
booktitle = {{USENIX Security}},
note = {Intel Bounty Reward, BlackHat USA},
author = {Rüegge, Sandro and Wikner, Johannes and Razavi, Kaveh},
month = aug,
year = {2025},
keywords = {dir\_microarch, proj\_promise, type\_tier1}
}
Downloads: 194
{"_id":"oAHogckP8D5qAgTB8","bibbaseid":"regge-wikner-razavi-branchprivilegeinjectioncompromisingspectrev2hardwaremitigationsbyexploitingbranchpredictorraceconditions-2025","author_short":["Rüegge, S.","Wikner, J.","Razavi, K."],"bibdata":{"bibtype":"inproceedings","type":"inproceedings","title":"Branch Privilege Injection: Compromising Spectre v2 Hardware Mitigations by Exploiting Branch Predictor Race Conditions","booktitle":"USENIX Security","note":"Intel Bounty Reward, BlackHat USA","author":[{"propositions":[],"lastnames":["Rüegge"],"firstnames":["Sandro"],"suffixes":[]},{"propositions":[],"lastnames":["Wikner"],"firstnames":["Johannes"],"suffixes":[]},{"propositions":[],"lastnames":["Razavi"],"firstnames":["Kaveh"],"suffixes":[]}],"month":"August","year":"2025","keywords":"dir_microarch, proj_promise, type_tier1","bibtex":"@inproceedings{rueegge_bprc_2025,\n\ttitle = {{Branch Privilege Injection: Compromising Spectre v2 Hardware Mitigations by Exploiting Branch Predictor Race Conditions}},\n\turl = {Paper=https://comsec-files.ethz.ch/papers/bprc_sec25.pdf URL=https://comsec.ethz.ch/bprc},\n\tbooktitle = {{USENIX Security}},\n\tnote = {Intel Bounty Reward, BlackHat USA},\n\tauthor = {Rüegge, Sandro and Wikner, Johannes and Razavi, Kaveh},\n\tmonth = aug,\n\tyear = {2025},\n\tkeywords = {dir\\_microarch, proj\\_promise, type\\_tier1}\n}\n\n","author_short":["Rüegge, S.","Wikner, J.","Razavi, K."],"urlPaper":"https://comsec-files.ethz.ch/papers/bprc_sec25.pdf","urlURL":"https://comsec.ethz.ch/bprc","key":"rueegge_bprc_2025","id":"rueegge_bprc_2025","bibbaseid":"regge-wikner-razavi-branchprivilegeinjectioncompromisingspectrev2hardwaremitigationsbyexploitingbranchpredictorraceconditions-2025","role":"author","urls":{"Paper":"https://comsec-files.ethz.ch/papers/bprc_sec25.pdf","URL":"https://comsec.ethz.ch/bprc"},"keyword":["dir_microarch","proj_promise","type_tier1"],"metadata":{"authorlinks":{}},"downloads":194,"html":""},"bibtype":"inproceedings","biburl":"comsec.ethz.ch/wp-content/files/bibtex.bib","dataSources":["pZypef47MfN3TyDAm","YypkWwoJGZmJmmbWZ"],"keywords":["dir_microarch","proj_promise","type_tier1"],"search_terms":["branch","privilege","injection","compromising","spectre","hardware","mitigations","exploiting","branch","predictor","race","conditions","rüegge","wikner","razavi"],"title":"Branch Privilege Injection: Compromising Spectre v2 Hardware Mitigations by Exploiting Branch Predictor Race Conditions","year":2025,"downloads":194}