https://outflux.net/slides/2020/lca/cfi.pdf … @kees_cook Slides on Linux kernel CFI. Clang jmp-table based CFI seems quite bad as add many opcodes before indirect branch, exec additional jmp and requires global call-site visibility (E.g. doesn't work for cross-module branch). (1/2)
-
-
We don’t use endbranch in Windows
-
Well, that answers it... Kinda disappointing to see yet another HW mechanism added to future CPUs when we already know this early it's not useful compared to existing software techniques. It may turn up to have same future as MPX had... I wonder why Intel doesn't drop it then.
- Još 1 odgovor
Novi razgovor -
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.