Indirect Branch Tracking (IBT) is still being eyed for enabling as part of the default Linux x86_64 kernel configurations to provide better out-of-the-box security on supported processors. A patch sent out today continues the upstream discussion over flipping on this feature by default that is part of Intel's Control-flow Enforcement Technology (CET) for helping to defend against jump/call oriented programming attacks. . Indirect Branch Tracking is part of CET found with Intel Tigerlake CPUs and newer. The Linux kernel support for IBT was merged in Linux 5.18 but to this point hasn't been enabled by default as part of the stock kernel configuration. Kees Cook with Google has sent out his latest proposal arguing for it to see being enabled by default as part of the Linux kernel configuration. Back in early September he originally proposed this change while sent out today was the v2 patch to reignite the discussion. The link for this article located at Phoronix is no longer available. . By default, Indirect Branch Tracking boosts the security of Linux, fortifying its defenses against various threats.. Indirect Branch Tracking, Control-Flow Enforcement Technology, x86_64 Security. . LinuxSecurity.com Team
In his keynote address at the Fall 2002 Intel Developer Forum, Otellini said that beginning in 2003, Intel processors would feature new technology that would better safeguard data from hackers and viruses. . .. In his keynote address at the Fall 2002 Intel Developer Forum, Otellini said that beginning in 2003, Intel processors would feature new technology that would better safeguard data from hackers and viruses . Code-named LaGrande Technology (LT), the initiative involves integrating security features into processors and chipsets to provide a more secure computing environment. "LaGrande delivers a hardware-based foundation for security," Otellini stated in his keynote address. "It includes protected execution, protected memory, and protected storage." The link for this article located at ZDNet is no longer available. . During the Fall 2002 Intel Developer Forum, Otellini emphasized advancements in data protection against hackers.. Hardware Security, Processor Technology, Data Protection. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.