[Cryptography] Speculation considered harmful?

Viktor Dukhovni cryptography at dukhovni.org
Tue Jan 9 16:36:24 EST 2018



> On Jan 9, 2018, at 2:42 PM, Jerry Leichter <leichter at lrw.com> wrote:
> 
> Spectre involves code within one hardware security domain gaining access to information *within the same security domain*.

My reading of the Spectre paper finds no such constraint.
Concurrent execution that trips over the vulnerable "gadget"
seems to suffice even across process boundaries.  Did I miss
some crucial text that narrows the exposure?

-- 
	Viktor.



More information about the cryptography mailing list