Alright look with all the side channel discourse happening again I just need to say it: modern silicon design is fucking hard, as is security in general. At the risk of sounding like an Intel shill: chill the hell out. There is a lot more to this than a lot of you realize.
-
-
It wouldn’t be to different from monitoring software currently used. The goal is detection of malicious activity, so if you can do classification and identification fast enough you don’t need to replicate the CPU.
-
I mean, we all know antivirus doesn't work. Reactive technologies are great and all, but how would you fundamentally distinguish malicious behavior from normal operation besides known signatures?
- Show replies
New conversation -
-
-
I'm not thinking of a full monitoring role, was juggling a million notifications when I saw this. My main motivation for this is the thought of ME/other management coprocessors which are unaudited attack surfaces.
-
I guess my main thought is that a separate, replacable, open source, simple processor for handling trusted execution tasks adds a level of security and peace of mind. It doesn't fix side-channels, but it does allow for verification of no sidechannels in trusted environments
- Show replies
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.
