Ethical Hacking News
Chinese Loongson processors have been found to have leaky caches, which could be exploited by attackers to extract sensitive data even when working within guest virtual machines. The vulnerability has raised concerns about the safety of devices utilizing these processors, particularly in light of China's efforts to promote domestic technology adoption.
Researchers from Germany's Helmholtz Center for Information Security discovered a critical vulnerability in Chinese Loongson processors called "LoongLeak."The leaky cache flaw allows attackers to extract sensitive data even when working within a guest virtual machine (VM).The vulnerability affects devices and systems that utilize Loongson processors, including Lenovo laptops sold exclusively in China.The researchers found that the leak occurs in the L1 data cache, which is not isolated between applications or the operating system.Attackers can potentially prime the CPU's internal state to target specific cache sets and extract sensitive information.The vulnerability has been fixed by Loongson with an update to their model 3A6000 processor.The impact of LoongLeak is limited due to niche usage of Loongson processors outside China, but its implications for national security and data integrity are substantial.
In a recent breakthrough, researchers from Germany's Helmholtz Center for Information Security have discovered a critical vulnerability in Chinese Loongson processors that has far-reaching implications for global data security. The leaky cache flaw, dubbed "LoongLeak," allows attackers to extract sensitive data even when working within a guest virtual machine (VM). This alarming finding raises concerns about the safety of various devices and systems that utilize Loongson processors, including Lenovo laptops sold exclusively in China.
According to the researchers' paper published on LoongLeakAttack.com, they discovered the leaky cache using a fuzzer and noticed an instruction in the LoongArch ISA manual that left 32 bits of a memory register in an "uncertain" state. Subsequent analysis revealed that this state was, in fact, from the L1 data cache, which is not isolated between applications or the operating system. This means that an attacker could potentially prime the CPU's internal state to target specific cache sets and extract sensitive information.
The researchers conducted several case studies demonstrating the potential exploits of LoongLeak. In one notable example, they were able to recover full-disk AES keys from the kernel and bypass traditional software defenses such as Address Space Layout Randomization (ASLR) and stack canaries within seconds. Furthermore, the vulnerability even allows attackers to exploit LoongLeak from unprivileged user space, containers, or virtual machines.
The researchers noted that the leakage is architectural, requiring neither high-resolution timers nor traditional sidechannel amplification, and granting the attacker precise control over cache set and line offset. Moreover, software mitigations are not possible, meaning users with affected chips must either replace them or take steps to prevent sensitive data from entering or remaining in the L1 cache.
The Chinese government's promotion of Loongson chips as part of its plan to reduce dependence on imported technology has raised concerns about potential vulnerabilities. Lenovo laptops that utilize these processors are primarily sold in China, and the researchers have noted that the company's adoption of Loongson products is largely driven by domestic demand.
In response to this research, Loongson has released an update to their model 3A6000 processor that fixes the leaky cache flaw. The mitigation measures are relatively simple but do come at a cost: disabling hyperthreading effectively cripples performance in the worst-case scenario.
While the impact of LoongLeak is likely limited due to the relatively niche usage of Loongson processors outside China, the potential for widespread exploitation remains a pressing concern. As Chinese officials instruct public sector buyers to purchase local products, the implications for national security and data integrity are substantial.
Related Information:
https://www.ethicalhackingnews.com/articles/The-Lurking-Vulnerability-in-Chinese-Loongson-Processors-A-Threat-to-Global-Data-Security-ehn.shtml
https://www.theregister.com/security/2026/08/13/chinese-loongson-processors-have-leaky-caches-researchers-find/5287137
https://cc-sw.com/chinese-loongarch-architecture-evaluation-part-3-of-3/
Published: Wed Aug 12 22:05:49 2026 by llama3.2 3B Q4_K_M