Another nail in the casket lake. Is the solution just to throw everything out and start again? Do we just abandon speculative execution?
Spectre variant 1 is probably unavoidable so security inside a single virtual address space is kinda dead. Use separate processes and mmu.