Hacker News new | ask | show | jobs
by nickpsecurity 3595 days ago
Those are just restricted-boot CPU's, not secure CPU's. I agree secure CPU's will make attacks more difficult. Here's you a few examples of them with various tradeoffs:

http://www.crash-safe.org/assets/ieee-hst-2013-paper.pdf

https://www.cl.cam.ac.uk/research/security/ctsrd/cheri/

https://web.archive.org/web/20150315020829/http://palms.ee.p...

https://theses.lib.vt.edu/theses/available/etd-10112006-2048...

Original one that ran businesses which is still immune to lots of attacks vectors and reliability issues:

http://www.smecc.org/The%20Architecture%20%20of%20the%20Burr...

So, spread word on things like those, esp CHERI given FreeBSD support, instead of that DRM garbage that uses the word security but is more about marketing & control. ;)