Discussion
Loading...

Post

  • About
  • Code of conduct
  • Privacy
  • Users
  • Instances
  • About Bonfire
David Chisnall (*Now with 50% more sarcasm!*)
@david_chisnall@infosec.exchange  ·  activity timestamp 5 days ago

We have released 1.0 of the #CHERIoT specification! The architecture has been unchanged for almost a year and has been implemented in two open-source cores. We (SCI) are getting back our first CHERIoT silicon from the fab soon and will be moving to mass production net year (I can't talk about what other people are doing with CHERIoT).

CHERIoT Platform

CHERIoT 1.0 Released!

Today, we released the 1.0 version of the CHERIoT specification! For those reading about CHERIoT for the first time, it is a hardware-software co-design project that aims to produce secure microcontroller-class systems for connected devices. We start with a foundational guarantee of memory safety (the hardware will trap on buffer overflows or use after free errors, even in assembly code) and build rich (and usable) compartmentalisation abstractions on top.
  • Copy link
  • Flag this post
  • Block
Christian Hergert
@chergert@my.devsuite.app replied  ·  activity timestamp 5 days ago

@david_chisnall Congrats and thanks for all you do!

Selfishly hoping this means more time for Étoilé 😄

  • Copy link
  • Flag this comment
  • Block
David Chisnall (*Now with 50% more sarcasm!*)
@david_chisnall@infosec.exchange replied  ·  activity timestamp 5 days ago

@chergert Any decade now…

We really need to get CHERI application processors before I can get back to that. Or sell the company for silly money so I can hire a bunch of people to do it…

  • Copy link
  • Flag this comment
  • Block
ermo | Rune Morling
@ermo@fosstodon.org replied  ·  activity timestamp 5 days ago

@david_chisnall What is the IoT landscape looking like in terms of adoption for this sort of thing?

Is there for instance any appetite from the UK gov't to sponsor the development and deployment of CHERIoT-based solutions in the context of critical infastructure services that need persistent monitoring?

  • Copy link
  • Flag this comment
  • Block
David Chisnall (*Now with 50% more sarcasm!*)
@david_chisnall@infosec.exchange replied  ·  activity timestamp 5 days ago

@ermo

NCSC is pushing it, as much as they are able (they have to be careful to advocate for technologies not companies).

There’s still a stupid press embargo, so I can’t say anything about other funding we may or may not have received two months ago to do rust and a a bigger second chip with the dual-issue core.

  • Copy link
  • Flag this comment
  • Block
Log in

bonfire.cafe

A space for Bonfire maintainers and contributors to communicate

bonfire.cafe: About · Code of conduct · Privacy · Users · Instances
Bonfire social · 1.0.0 no JS en
Automatic federation enabled
  • Explore
  • About
  • Members
  • Code of Conduct
Home
Login