New Spectre‑v2 BTR Variant Targets JIT Engines
🔒 A team from VUSec and Scuola Superiore Sant'Anna has disclosed a new Spectre‑v2 variant called Branch Target Reuse (BTR) that impacts JIT engines in browsers, language runtimes, and the Linux kernel across multiple CPU vendors. Researchers demonstrated exploitation against SpiderMonkey, GraalVM, and cBPF JIT, producing kernel exploits that can recover root password hashes on patched Intel systems. Mitigations have been merged into the Linux kernel under CVE‑2026‑64507 and CVE‑2026‑64508, while vendors pursue code‑cache randomization and site isolation approaches.
