Meltdown and Spectre exploit critical vulnerabilities in modern processors – what you need to know

Cybersecurity researchers have discovered chip design flaws allowing security vulnerabilities known as Meltdown and Spectre, which could affect almost every modern computer processor. Exploitation of these vulnerabilities could allow an attacker to obtain access to sensitive information such as passwords on computers, servers, and smartphones.
The Meltdown and Spectre flaws are found in many modern computer processing units (CPU) or microchips — made by Intel and ARM, and together the firms supply almost the entire global market.
What do Meltdown and Spectre mean?
–– Both attacks use side channels to obtain the information from the accessed memory location.
Patches or fixes are currently being raced out in system updates in order to protect machines before this major vulnerability allows hackers time to steal data.
We STRONGLY encourage and recommend that everyone update their smartphones and machine’s security and operating systems to their most current update. Microsoft has already included a fix in their latest update which was sent out on Wednesday — if you use Windows 10, check in Settings > Update & Security — that your machine has downloaded and installed this update and if not, please do so as soon as you can.
Android Google phones have been protected in its latest software update so please ensure this update has been downloaded and installed.
Apple has also confirmed that iPhones, iPads and Mac computers have been affected and that they have already released fixes in their most recent iOS update and that there has been no evidence to date that the vulnerability has been exploited. If you have an Apple device, ensure you are using iOS 11.2 or later on iPhone and iPad and Sierra 10.13.2 for iMacs, Macbooks, Macbook Pros and Mac Minis.
Google Chrome is releasing an update on 23 January but if you want to add an additional security measure in the meantime, please go to — chrome://flags/#enable-site-per-process, then click “enable” for “strict site isolation”.
The main thing you can do for now is to ensure that your device’s security and software is up-to-date and to keep checking for updates in the coming days as manufacturers release more fixes as they learn more.
If you have any questions or would like to discuss our security software, please be in touch at [email protected].