Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I find it reassuring that you can still get access to the data running on your own device, despite all the tens of thousands of engineering hours being poured into preventing just that.


I doubt you own hardware capable of any of the confidential computing technology mentioned


My 2017 bottom shelf lenovo has SGX whether I like it or not.

In current year you can't really buy new hardware without secure enclaves[0], be it a phone, a laptop or server. Best you can do is refuse to run software that requires it, but even that will become tough when goverments roll out mandatory software that depends on it.

[0]: unless you fancy buying nerd vanity hardware like a Talos POWER workstation with all the ups and downs that come with it.


Intel killed SGX on consumer CPUs a while ago

https://news.ycombinator.com/item?id=31047888


Intel TXT is another related trusted execution/attestation/secure enclave feature, not sure how prevalent that one is, though


Pretty sure you can turn off SGX in the BIOS?


Well microcontrollers can prevent you from repairing your own device with DRM and secure enclaves




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: