Software complexity is so out of control. Mobile devices are running type 1 hypervisors now. github.com/quic/gunyah-hypervi… (Learned about this via social.treehouse.systems/@cas/… - about the boot chain for a new MNT Reform processor module based on a Qualcomm SoC; to be clear, MNT is doing good work.) In other words, our most popular and mature operating systems are so big and so insecure that we have to run them on top of another OS. Just now I wish Tanenbaum had won rather than Torvalds.
GitHub - quic/gunyah-hypervisor: Gunyah is a Type-1 hypervisor designed for strong security, performance and modularity.
Gunyah is a Type-1 hypervisor designed for strong security, performance and modularity. - quic/gunyah-hypervisorGitHub
Adrian Vovk
in reply to Matt Campbell • • •I think this is more about running multiple OSs in parallel.
Intel does this too, they just do it behind your back. That's the management engine and that's where things like firmware TPM live
On silicon without hardware isolated secure enclaves, VMs is how you do it
Elijah Massey
in reply to Matt Campbell • • •