Live data from Hacker News

Intel Responds to Security Research Findings

newsroom.intel.com

1–10 of 245 posts

Re: Intel Responds to Security Research Findings

#2
> Contrary to some reports, any performance impacts are workload-dependent, and, for the average computer user, should not be significant and will be mitigated over time.

Given the lack of any facts, evidence, or details in the press release, how is anyone supposed to take Intel seriously?

Re: Intel Responds to Security Research Findings

#3
> Intel is committed to the industry best practice of responsible disclosure of potential security issues

No, the industry best practice is coordinated disclosure. The term "responsible disclosure" is a misnomer that we'd be far better off if we, as a society, stopped using it.

https://adamcaudill.com/2015/11/19/responsible-disclosure-is...

Re: Intel Responds to Security Research Findings

#6
post #4

This is not a security report, this is PR. Among other things, it implies, without explicitly naming them, that AMD, ARM and OS vendors are being directly affected while most information out there point out it's merely an Intel issue.

It does explicitly name them:

> Intel is committed to product and customer security and is working closely with many other technology companies, including AMD, ARM Holdings and several operating system vendors, to develop an industry-wide approach to resolve this issue promptly and constructively.

Re: Intel Responds to Security Research Findings

#7

> Intel is committed to the industry best practice of responsible disclosure of potential security issues No, the industry best practice is coordinated disclosure . The term "responsible disclosure" is a misnomer that we'd be far better off if we, as a society, stopped using it. https://adamcaudill.com/2015/11/19/responsible-disclosure-is...

Do you think the executive speculation has been well coordinated? :)

Re: Intel Responds to Security Research Findings

#8

> Contrary to some reports, any performance impacts are workload-dependent, and, for the average computer user, should not be significant and will be mitigated over time. Given the lack of any facts, evidence, or details in the press release, how is anyone supposed to take Intel seriously?

Considering Intel's dominance in the server space, I don't anyone is worried about the average user here

Re: Intel Responds to Security Research Findings

#10
It comes across as fairly defensive. Presumably the statement was hastily put together, but it's not really the tone you want to strike when you have a lot of worried customers wondering what is going on.

> Intel believes its products are the most secure in the world and that, with the support of its partners, the current solutions to this issue provide the best possible security for its customers.

A rather bizarre statement of nothingness, and also an odd thing to say in a statement that just named AMD and ARM.

> Contrary to some reports, any performance impacts are workload-dependent, and, for the average computer user, should not be significant and will be mitigated over time.

It's interesting to note what it doesn't say – as it would seem to imply that for some workloads the performance impact will be significant.

Post reply on HN