Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Genuine question - is this what you're referring to? Very curious.

https://www.usenix.org/system/files/conference/usenixsecurit...



Hadn't heard of it actually, but side channels have been an issue in browser security for a long time.

Spectre caused a lot of changes in JS like disabling high precision clocks. But I'm afraid clock proxies are everywhere. The API surface is gigantic and all you need is a single call that reliably executes in constant time on the samr thread




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: