I'll be talking with Sam Curry tomorrow in the webinar on the Future of Security. You are welcome to join! Please register at: attendee.gotowebinar.com/reg…
It looks like the Intel attacks seriously affect end user systems as well and are remotely exploitable (Javascript, flash/client-side Java?). Can be injected to any unencrypted HTTP connection on the network or by corrupt server. Browser dependent. Email? spectreattack.com/spectre.pd…
The Intel speculative execution flaw appears serious and multiuser systems (especially public cloud hypervisors) MUST be patched quickly. End user systems and appliances appear largely unaffected (single user). Not remotely exploitable. Performance penalty from fix 5-30% or so.