New FROST Attack Lets Websites Track What Sites and Apps You Open via SSD Timing

Read full story on The Hacker News
Share
New FROST Attack Lets Websites Track What Sites and Apps You Open via SSD Timing
AI disclosure

Summary

A malicious website can work out which sites you visit and which apps you open, using nothing but JavaScript and the timing of your SSD. The attack, called FROST, needs no native code, no extension, and no permission prompt. You open the page, leave the tab sitting there, and it watches the drive for contention in the background. Researchers at Graz University of Technology built it and

Original reporting

Open original source

Related coverage

Read full article on The Hacker News

Get the AFBytes Brief

Major stories, AI-assisted analysis, and what to watch next. Free, monthly, unsubscribe anytime.