Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

How big a concern is this if the data is encrypted by the kernel or user space?


Encryption does not help in this case. They have complete remote control over the entire CPU so they can just run the decryption code directly.

Encryption only helps if the endpoints that can get access to the plaintext are not compromised.


There are atleast 2 more exception levels with higher privileges than the Kernel on arm64.




Consider applying for YC's Winter 2026 batch! Applications are open till Nov 10

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: