Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Zeroing data does not protect from sidechannel exfiltration. You really need to mfence it also. The zeroize crate also doesn't help there, it only does protect from wrong compiler dead block elimination.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: