RISC-V Processors Found Vulnerable to Spectre Attacks

RISC-V Processors Found Vulnerable to Spectre Attacks

First seen 12 Aug 2026, 20:04 UTC Theregisterwww.usenix.org 72% similarity 67.5

Article Content

Browse articles
ThreatCluster

Researchers have revealed that certain commercially available RISC-V processors are vulnerable to Spectre attacks, challenging the assumption that this architecture is immune due to its simplicity. Specifically, the SiFive P550 and T-Head Xuantie C910/C920 processors can be exploited using various Spectre variants, including Spectre-PHT and Spectre-BTB. A proof-of-concept attack demonstrated the ability to leak arbitrary Linux kernel memory at a rate of 338 B/s. The study highlights a lack of mitigations in software and the absence of a dedicated speculation barrier in the RISC-V instruction set. Researchers have also contributed patches to the Linux kernel to address these vulnerabilities. The findings were presented at the 35th Usenix Security Symposium, emphasizing the need for security measures as RISC-V enters critical deployments.

Key Points: • Commercial RISC-V processors are vulnerable to Spectre attacks, contrary to prior beliefs. • Proof-of-concept exploits can leak Linux kernel memory from affected processors. • Mitigations for Spectre vulnerabilities are largely absent in the RISC-V ecosystem.

ThreatCluster AI How this analysis works

Timeline

2026-08-12
Research on RISC-V Spectre vulnerabilities published
Researchers demonstrated that SiFive P550 and T-Head Xuantie C910/C920 processors are susceptible to Spectre attacks, leaking kernel memory.
Theregister
2026-08-12
First Spectre attack on real RISC-V hardware demonstrated
The research presented proof-of-concept attacks that achieved up to 100% recall and over 97% precision on RISC-V processors.
www.usenix.org
2026-08-12
Linux kernel patches contributed
The researchers audited the Linux kernel for Spectre gadgets and contributed several patches that were accepted upstream.
www.usenix.org

Community

Browse all →

Tracked Entities in This Story