Memory tagging is an awesome technology, and the scariest mitigation I have seen as an attacker, ever. As such I am excited to read the paper, but dismayed that the authors seem to be affected by Redmondian RIP/PC obsession. The true value of MT is not in control flow integrity.
Quote Tweet
Interested in memory safety exploits & mitigations?
Here's a new research paper that explores an ISA extension which tries to make it more difficult to corrupt pointers.
All feedback on the security efficacy and overall design is appreciated :)
microsoft.com/en-us/research
6
36
168




