Hacker News new | past | comments | ask | show | jobs | submit login

This method was talked about since the Spectre/Meltdown days. It has often taken Google much longer to release patches they've been sitting on, e.g. many original containers patches were like this.

Why didn’t Intel do it then?

Do what exactly? This is essentially a performance optimization for folk bagholding oceans of vulnerable hardware

It should work. Who would trust Intel in this?

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact
