Mayhem — an attack that corrupts bits in memory to bypass authentication in sudo and OpenSSH
Researchers from Worcester Polytechnic Institute (USA) have introduced a new type of Mayhem attack that utilizes a bit-flipping technique in dynamic RAM, known as Rowhammer, to alter the values of variables in the stack, which serve as flags for determining the success of authentication and passing security checks. Practical examples of this attack's application have been demonstrated to bypass authentication in SUDO, OpenSSH, and MySQL, […]
