Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Windows does this in software, since approximately 8 years.

An advantage of the software solution is that you don't need to have the feature compiled into every library for it to work, you just lose protection in those parts. That makes for a much quicker rollout. Also faster iteration times, in the Windows Insider Preview you can get the extended version that also checks that the hashed function signature matches.

1: https://learn.microsoft.com/en-us/windows/win32/secbp/contro...



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: