Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Maybe? The reality is that most OSS is run from downloaded binaries and not precompiled. Even if it were, most people would be using the exact same compiler.

From the description of the attack though, the function charging the capacitor wouldn't have to be all that obscure.

The attack could cause a privilege escalation but if the running process that accidentally triggered it isn't asking for escalated privileges then having them won't cause harm.

The circuitry could have a discharge resistor across the capacitor causing it to drain quickly. This would require the trigger to be executed and then subsequent attack in a very short window of time.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: