top | item 45489066

(no title)

Simple8424 | 4 months ago

Is this making confidential computing obsolete?

discuss

order

Harvesterify|4 months ago

In their current form, AMD and Intel proposals never fulfilled the Confidential Computing promises, one can hope they will do better in their next iteration of SGX/TDX/SEV, but they were always broken, by design.

dist-epoch|4 months ago

That's like saying a security vulnerability in OpenSSL/SSH is making SSL/SSH obsolete.

JW_00000|4 months ago

It's a bit more fundamental in my opinion. Cryptographic techniques are supported by strong mathematics; while I believe hardware-based techniques will always be vulnerable against a sufficiently advanced hardware-based attack. In theory, there exists an unbreakable version of OpenSSL ("under standard cryptographic assumptions"), but it is not evident that there even is a way to implement the kind of guarantees confidential computing is trying to offer using hardware-based protection only.