Author Topic: InSpectre - Check/Toggle your PC's defenses against Meltdown & Spectre[GRC.COM]  (Read 1578 times)

Offline splerdu

  • Veterans
  • Member
  • ***
  • Posts: 7890
https://www.grc.com/inspectre.htm



Nifty little tool that checks if appropriate patches and/or BIOS microcode updates have been applied to yer system to protect against Meltdown/Spectre. Also gives the option to toggle mitigations on or off to get more system performance (like toggle off when gaming, toggle on before opening any sensitive files or doing online banking).
fhtagn

Online Mr. Bungle

  • Member
  • **
  • Posts: 1049


Win 10 Pro 1709 Build 16299.192
8700K
Asus ROG Strix Z370-F UEFI ver. 0606

Offline wheelee

  • Member
  • **
  • Posts: 3983
  • Nobody's tomorrow is guaranteed
NO
YES
GOOD

win7 64bit
Phenom955
ASrock iCafe 870

Offline theDUD3

  • Member
  • **
  • Posts: 2762
NO
YES
GOOD

Win 10 Pro x64 1709 Build 16299.192
Ryzen 1700
Ryzen 7 3700X | MSI B450 Tomahawk Plus | 2x8GB GSkill FlareX DDR4 3200 CL14 @ 3800Mhz CL16 | GTX 1070 Ti | Samsung 960 Evo 250GB M.2 NVMe + Samsung 850 Evo 250GB SSD  + 6TB HDD | 27" Dell U2713H IPS @ 2560x1440 | Logitech G512 Mechanical Keyboard | Logitech G304 Wireless Gaming Mouse

Online Mr. Bungle

  • Member
  • **
  • Posts: 1049
Microsoft has also released a PowerShell validation script to check if your computer is protected from speculation side channel vulnerabilities.

https://gallery.technet.microsoft.com/scriptcenter/Speculation-Control-e36f0050

I tested my office desktop and here's what I got:



Win 10 Pro x64
Pentium G4560
Asrock B250M Pro4 UEFI ver. 2.20

Offline splerdu

  • Veterans
  • Member
  • ***
  • Posts: 7890
^ The problem with the script is that it's only immediately available if you're on W10 or Server 2016. Earlier versions require some fiddling with (installing WMF 5.1). If you have to do that, InSpectre is much smaller and easier to run.

If you're a sysadmin for a network though, SpeculationControl is probably better because you can make scripts to execute it remotely on a bunch of computers and pipe the output to a logfile.
fhtagn

Online ris

  • Member
  • **
  • Posts: 3952
vulnerable din ako sa spectre...

no
yes
good
To steal ideas from one person is plagiarism
To steal from many is research

Offline bravoexo

  • Member
  • **
  • Posts: 3332
  • PeopleSoft
Main PC  (Ivy Bridge)

No
Yes
Slower

Main Laptop (Skylake)

No
Yes
Good

Now what?
i9-9900K, Aorus Z390 Master, Aorus RGB 32Gb DDR4-3200, ASUS ROG Strix 1080 SLI, Samsung 970 Evo Plus 500Gb, Samsung 970 Evo 500Gb, Crucial MX100-512Gb SSD, Sandisk Ultra II 960Gb SSD, Crucial BX500 1Tb x2, Sony KDL 43X8500G, GMX 2.1, Lian-Li PC-011 Air, Corsair H150i Pro, Corsair LL-120x6, LG Bluray

Online ris

  • Member
  • **
  • Posts: 3952
i just read the text on the program.  it mentions that my windows has already "awareness" of the two vulnerabilities but my hardware is not updated for protection from them.  i guess im just stuck with this since my hardware is too old to have some updates against these vulnerabilities
To steal ideas from one person is plagiarism
To steal from many is research

Offline Banhammer

  • Semi-Newbie
  • *
  • Posts: 6
Thanks for this info @splerdu. I'm about to update my BIOS.

Online Mr. Bungle

  • Member
  • **
  • Posts: 1049
There's a new Spectre variant in town. Fixes are on the way but will be disabled by default because Intel and MS believe that it has not been exploited in the wild yet and it carries a 2-8% performance penalty.