3 ms·
Intel does support SGX code signing where vendors/developers have to apply (just like getting Windows Kernel drivers signed by Microsoft): https://software.inte
by server_bot 9y ago
Intel does support SGX code signing where vendors/developers have to apply (just like getting Windows Kernel drivers signed by Microsoft): https://software.intel.com/en-us/articles/intel-sgx-product-licensing https://software.intel.com/en-us/articles/intel-sgx-product-...
To the best of my knowledge, all SGX attack research papers disable checks and run unsigned SGX code to demonstrate a proof of concept.
Not saying vendors won't run horrid things in SGX enclaves, just saying malware authors are gonna need to steal a private key first :P
- deleted 9y ago[deleted]
- otp124 9y ago> To the best of my knowledge, all SGX attack research papers disable checks and run unsigned SGX code to demonstrate a proof of concept. While interesting, papers like these usually have titles that are disingenuous at best. I’ve seen the media report on papers with scary titles and make it sound like the sky is falling, but the scenario is generally (not always) contrived.