3 ms·
> any open source solution that utilized the same performance strategies would have also had the same attack vector. And then researchers, armed with open-sour
by _chris_ 9y ago
> any open source solution that utilized the same performance strategies would have also had the same attack vector.
And then researchers, armed with open-source hardware implementations, can openly probe the systems with white box attacks; then they can fix the system; and then they can verify the fix.
In reading the Spectre/Meltdown white papers, I was a little disturbed at how the authors had to grok through the fog to figure out how to attack the machine, and that they could not say with certain if a particular CPU was actually invulnerable or if their particular attack was simply ineffective.