3 ms·
There is CHERI, which seems pretty cool: “CHERI extends conventional hardware Instruction-Set Architectures (ISAs) with new architectural features to enable fi
by ylk 4y ago
There is CHERI, which seems pretty cool:
“CHERI extends conventional hardware Instruction-Set Architectures (ISAs) with new architectural features to enable fine-grained memory protection and highly scalable software compartmentalization. The CHERI memory-protection features allow historically memory-unsafe programming languages such as C and C++ to be adapted to provide strong, compatible, and efficient protection against many currently widely exploited vulnerabilities.”
https://www.cl.cam.ac.uk/research/security/ctsrd/cheri/ https://www.cl.cam.ac.uk/research/security/ctsrd/cheri/
I forgot the details but iirc it’s not too much work to recompile programs for the architecture.
It was discussed on HN before, e.g. https://news.ycombinator.com/item?id=30007474 https://news.ycombinator.com/item?id=30007474