TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

What Spectre Means for Lanugage Implementers [video]

42 点作者 cmeiklejohn将近 6 年前

3 条评论

bakery2k将近 6 年前
&gt; Conclusion:<p>&gt; * Programming language implementations <i>cannot establish confidentiality</i> on today&#x27;s hardware<p>&gt; * Don&#x27;t run untrusted code in the same process with secrets it could steal<p>I understand that because of this, browsers are moving towards running untrusted JavaScript code in separate processes, so that confidentiality is provided by process boundaries.<p>Does anyone know whether other applications that embed scripting languages and run untrusted code (e.g. games that embed Lua[JIT]) are also moving towards a multi-process architecture?
评论 #20505770 未加载
评论 #20505633 未加载
评论 #20505127 未加载
gpderetta将近 6 年前
Only tangentially related: what does Spectre means for single address space OSs (Midori, Singularity)?
评论 #20505804 未加载
hak8or将近 6 年前
That&#x27;s a very weird typo for language. Usually we can tell what word was meant if some letters are missing from what I understand, but for some reason this one was surprisingly bad.
评论 #20505023 未加载
评论 #20504449 未加载
评论 #20504954 未加载