Jonathan Guerin

89 Followers
365 Following
22 Posts
Security Engineer on the MORSE team at Microsoft. My opinions are my own.
@bjango The First Day of Week setting is ignored right now - it seems to always use Sunday.
@bjango is there a way to reorder groups in things like Menu Bar Clocks?
@overcastfm the beta client seems to be re-downloading episodes that I’ve deleted. It seems like each show’s settings are overriding deletion of episodes.
As promised - our new CHERIoT (CHERI-RV32E) microcontroller and software stack is now open-source! I'm very excited about this work. Scaling CHERI down to small cores could be a life-changer to the IoT and embedded ecosystems. 🧵​ https://aka.ms/cheriot-tech-report
@ivory suggestion for the app - it’d be awesome if tapping the Home icon when already on that view refresher with the latest content and scrolled to the top of the feed!

New blogpost! I put together a thorough survey of security mitigations and architectures from the past few years.

Hardware solutions, software mitigations, and safe languages. CHERI, MTE, Rust, Swift, kalloc_type, Firebloom, GuardedMemcpy, CastGuard, and more! https://saaramar.github.io/memory_safety_blogpost_2022/

Survey of security mitigations and architectures, December 2022

memory_safety_blogpost_2022

“I’ve never seen anything like this in my more than 20 years in Congress.”

—George Santos

Another cool change in kalloc (you can see it in the iOS 16 / macOS 13 OSS drop) is packed kalloc array type.

The comments describe the security value nicely: "embedding lengths inside the allocation is self-referential and an appetizing target for post-exploitation strategies"

One of the best encryption discussions I've heard in a long time.

RT @[email protected]

Today on the Lawfare Podcast, @[email protected] talks with @[email protected] about Apple's new security features for iPhone and how it plays into the broader Crypto Wars.

On Youtube with auto-captions:
https://www.youtube.com/watch?v=mabjDIs5LOI

🐦🔗: https://twitter.com/lawfareblog/status/1603067283848536064

Riana Pfefferkorn on End-to-End Encryption for iPhone Backups to iCloud

YouTube