Detecting Spectre variant 1 using Klocwork
The Spectre vulnerability has dominated cybersecurity headlines since Google announced it earlier 2018. Most stories are about its nature and potential prevalence, rather than solving the fundamental problem. But now, there's a solution — Klocwork checker SPECTRE.VARIANT1. It detects potential occurrences of Spectre variant 1 (CVE-2017-5753) in your code.
In this video see how Klocwork static code analysis detects the Spectre variant 1 vulnerability, including code walkthroughs of how the exploit and checker work.