Skip to content
Better HN
Top
Best
Ask
Show
New
Jobs
Search
⌘K
0 points
cryptonector
2y ago
0 comments
Save
Share
No, the
attack
would be implemented in JS, not the victim code (though, that too, but that's not what's interesting here).
0 comments
2 comments · 1 top-level
top
newest
oldest
olliej
2y ago
· 1 in thread
Ah, you’re concerned about person using js to execute the side channel portion of the attack, not the bit creating the side channel :)
cryptonector
OP
2y ago
FYI malicious JS executing in victim users' browsers is a huge concern. All sorts of vulnerabilities can be exploited via JS in this way -- every local side-channel like Spectre/Meltdown, worse things like Row Hammer, etc.
j
/
k
navigate · click thread line to collapse