• 2 Posts
  • 28 Comments
Joined 2 years ago
cake
Cake day: June 5th, 2023

help-circle
  • … It was incredibly sobering that a case about our privacy was being conducted both in private and in secret. So we’re pleased to see a course change here. That said, the battle is not yet won. The arguments to break encryption do not just relate to this specific case and we are having to constantly make the case for why encryption is vital in our democracy; nor does this judgment stipulate that the case will be held fully in the open moving forward – as it should be – only that we can know the “bare details”. We welcome this news but we continue to fight for full transparency here.


  • The legislation would force companies to store and provide law enforcement with access to their users’ communications, including those that are end-to-end encrypted.3 The consensus among cybersecurity experts is that complying with this requirement for end-to-end encrypted communications services will be impossible without forcing providers to create an encryption backdoor4 —akin to a master key that unlocks every door in a building.

    Hopefully they don’t pass this devastating legislation. One has to wonder who this would be benefitting the most? I doubt law enforcement even cares that much. My guess is the same that is responsible for Brexit and destroying the US. Resist wile you can, or better yet get the things you care about enshrined in your constitution and advertised among your constituents. Don’t think it can’t happen to you next.





  • The LAP can issue loads to addresses that have never been accessed architecturally and transiently forward the values to younger instructions in an unprecedentedly large window," the researchers wrote. “We demonstrate that, despite their benefits to performance, LAPs open new attack surfaces that are exploitable in the real world by an adversary. That is, they allow broad out-of-bounds reads, disrupt control flow under speculation, disclose the ASLR slide, and even compromise the security of Safari.”

    SLAP affects Apple CPUs starting with the M2/A15, which were the first to feature LAP. The researchers said that they suspect chips from other manufacturers also use LVP and LAP and may be vulnerable to similar attacks. They also said they don’t know if browsers such as Firefox are affected because they weren’t tested in the research.