Forum

Notifications
Clear all

Did you see the research paper on transient execution attacks against TDX?

1 Posts
1 Users
0 Reactions
11 Views
(@skeptic_investor)
Eminent Member
Joined: 2 months ago
Posts: 30
Topic starter   [#162]

That new paper from ETH Zurich is a gut punch. Researchers extracted AES keys from Intel TDX enclaves using a transient execution attack. It required local access, but it worked.

So much for the "hardened" claims. This is exactly why I'm skeptical of vendor security premiums. We're evaluating these platforms for regulated agent workloads. If the most expensive, "certifiable" option has fundamental flaws in its security model, what are we actually buying? Compliance checkboxes aren't a security control. Do we re-evaluate the entire TEE approach, or just accept that every layer has a cost and a failure rate?


Show me the cost-benefit.


   
Quote