Posts
3915
Following
728
Followers
1600
"I'm interested in all kinds of astronomy."
repeated
repeated

First CHERIoT Silicon!

ICENI on a development board

Most CHERIoT work to date has been done on software or FPGA simulations. We have several such implementations: The executable model built from our formal ISA specification, the MPact simulator from Google, Microsoft’s CHERIoT SAFE FPGA target for the Arty A7, and of course lowRISC’s beautiful Sonata FPGA board, which is designed to simulate CHERIoT systems. These were always intended to be developing and prototyping systems, so I’m delighted to announce that SCI Semiconductor has the first silicon CHERIoT implementation.

[ Conflict disclaimer: I am a co-founder of SCI Semiconductor. ]

The dev board pictured above contains one of the first batch of ICENI chips to come back from the fab. This is a complete CHERIoT system, with all of the core CHERI properties (spatial memory safety, no pointer injection, and so on) along with all of the CHERIoT extensions that provide deterministic use-after-free protection, auditable control over interrupt state, and everything that we need for an aggressively compartmentalised RTOS.

This chip uses the CHERIoT Ibex core, running at up to 250 MHz, and includes a few feature that accelerate temporal safety, improve interrupt determinism, and so on. These build on top of all of the benefits of any CHERIoT implementation: deterministic mitigation of memory safety bugs from simple buffer overflows up to use-after-free, fine-grained compartmentalisation, and a programming model co-designed with both the ISA and the software stack to provide a tiny TCB. Anything that works on CHERIoT SAFE or Sonata should be very easy to port to ICENI for production use. Anything that runs on the software simulators should just work.

We’ll be showing the chips at Embedded World (Stand 4A - 131) next week and at CHERI Blossoms a couple of weeks later. From tomorrow, one will also be on display in the CHERI 15th anniversary exhibit in the Cambridge Computer Laboratory.

Aside: The Iceni tribe were one of the pre-Roman tribes in Britain and are famous for their chariots (though more due to this statue than historical fact). I am only partially to blame for the bad puns in the naming.


0
3
0
repeated

The latest episode of 'Where Warlocks Stay up Late" dropped yesterday. Featuring yours truly. The interview goes pretty deep from growing up in Maine, working at Lotus, stories about L0pht you may not have heard before to getting fired from @stake. Probably the most personal interview I have ever given.

https://www.youtube.com/watch?v=j6jhAugNqvE

0
7
0
If you optimize for stupid, you'll have to optimize for more stupid.

#ShowerThoughts

(I'm still considering s/stupid/lazy/g)
0
1
1
repeated

RE: https://tldr.nettime.org/@tante/116170621153319970

Kept thinking about it so I tried to add to it in a quick article. It's about software and love. And Open source.

https://tante.cc/2026/03/04/artisanal-care/

0
4
0
repeated

SolarWinds RCE (@chudypb), Windows 11 Recall-based LPE (@filip_dragovic), Robot RCEs (@olivier_boschko + @ruikai), EDR as a RAT (@p0w1_), and more!

https://blog.badsectorlabs.com/last-week-in-security-lwis-2026-03-02.html

1
4
0
I'm at the stage of debugging where I start to see cosmic meaning in PIDs.

#numerology
3
3
6
repeated

My second article in Paged Out! #8 was about the architecture of the terminal emulator on Linux - it's a really obvious thing until you start digging into details, as usual.

Web viewer: https://pagedout.institute/webview.php?issue=8&page=43&article=Linux+terminal+emulator+architecture
PDF download: https://pagedout.institute/?page=issues.php

0
4
0
repeated

f(x,y) = ((((-y) % (y ^ 11)) / ((1 % x) * (-x))) & (-((~y) | (~x)))) % 13

Extent: 256x256 (scaled x2)

"Onebit" colouring scheme.

0
2
0
#music #blackmetal
Show content
New Blackbraid track dropped \m/

https://www.youtube.com/watch?v=za79knQNnOs
0
0
1
repeated

Axios: Exclusive: Researchers trick a bot that prescribes meds

"Security researchers used relatively simple jailbreaking techniques to trick the AI system powering Utah's new prescription refill bot.

Researchers were able to make the bot spread vaccine conspiracy theories, triple a patient's prescribed pain medication dosage, and recommend methamphetamine as treatment."

https://www.axios.com/2026/03/04/doctronic-utah-prescriptions-ai-jailbreak

2
3
0
repeated

Solved but now unsolved problems in computer science:
- copying files off a phone without using a network/cloud/internet

4
5
0
Published a bugfix for my byte encoding tool `xer` to allow converting binary data from stdin:

https://crates.io/crates/xer/0.0.6
0
1
1
repeated
repeated

Talos Vulnerability Reports

New vulnerability report from Talos:

The Biosig Project libbiosig ABF parsing out-of-bounds read vulnerability

https://talosintelligence.com/vulnerability_reports/TALOS-2025-2323

CVE-2025-64736
0
1
1
repeated

Talos Vulnerability Reports

New vulnerability report from Talos:

The Biosig Project libbiosig Intan CLP parsing heap-based buffer overflow vulnerability

https://talosintelligence.com/vulnerability_reports/TALOS-2026-2361

CVE-2026-22891
0
1
1
repeated
repeated

That one XKCD thing, now interactive.

This is so much fun... Craig S. Kaplan: In my online undergraduate P5.js course, students are about to begin the module on motion and physics, including a bit of physics simulation using Matter.js. It suddenly...
https://jwz.org/b/yk4B

1
6
0
repeated

Can you feel it too?

Join us today for our analysis of Juniper's recent pre-auth RCE - CVE-2026-21902 - affecting a very specific set of devices. Curious?

https://labs.watchtowr.com/sometimes-you-can-just-feel-the-security-in-the-design-junos-os-evolved-cve-2026-21902-rce/

0
4
0
Show older