Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

The costs to subvert SGX are unfortunately far below millions. Probably hundreds or thousands after you have some one time research.

It is a viable additional client protection, especially against remote malware, software-only tampering (unless there are implementation bugs or backdoors), but not a viable server trust substitute.



Probing a live chip for 30k - https://zeptobars.com/en/


Probably cheaper side channel attacks, too. To some extent this depends on the software running under SGX.


how this will help if the encryption/decryption happens inside the chip?


Probing a chip means attaching probes directly to chip's circuitry/cells




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: