zlacker

[parent] [thread] 3 comments
1. monoca+(OP)[view] [source] 2023-10-27 18:01:21
I don't think that helps much. OpenBSD already only allows syscalls originating out of the libc .text section, so whether the trap itself comes from a syscall instruction or some other trap mechanism doesn't really improve security AFAICT.
replies(1): >>saagar+lG
2. saagar+lG[view] [source] 2023-10-27 21:44:40
>>monoca+(OP)
Yeah but it sounds super cool doesn’t it!
replies(1): >>monoca+kT
◧◩
3. monoca+kT[view] [source] [discussion] 2023-10-27 23:19:36
>>saagar+lG
Every time I've seen a dev team go down that road, it's come with rather unfortunate unintended side effects.

https://devblogs.microsoft.com/oldnewthing/20041215-00/?p=37...

replies(1): >>saagar+5d1
◧◩◪
4. saagar+5d1[view] [source] [discussion] 2023-10-28 02:12:08
>>monoca+kT
Yeah but think of the attacks I thought of in the shower that it mitigates
[go to top]