Hacker News new | ask | show | jobs
by saidnooneever 14 days ago
this is a good OS but mainly because using it will be a little impossible without considering certain things. if you do consider those things you could do almost as much on other systems (bsd mainly but also linux to a degree). hw isolation is not, but if that is what you defend against you better make sure you do all other things 100% right 100% of the time.

it does serve a real purpose for hw isolation and imho if you need that level of security is pretty much the only option outside of a custom build which would amount to something with similar properties.

still it would not help against certain hw based attacks. mainly evil maid type of things. not a rogue cpu or nvme drive...