Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
m1ghtym0
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
6 ms
·
1.
▲
by
m1ghtym0
11mo ago
Exactly, attestation is what matters. Excluding the inference provider from the prompt is the USP here. Privatemode can do that via an attestation chain (source code -> reproducible build -> TEE attestation report) + code/stack t
2.
▲
by
m1ghtym0
2y ago
Love it \o/
3.
▲
Kubernetes Blog: K8s X Confidential Computing
(kubernetes.io)
7 points
by
m1ghtym0
3y ago
|
0 comments
4.
▲
Confidential Computing Makes Inroads to the Cloud
(thenewstack.io)
2 points
by
m1ghtym0
4y ago
|
1 comments
5.
▲
Why confidential computing will be critical to future data security efforts
(venturebeat.com)
1 points
by
m1ghtym0
4y ago
|
0 comments
6.
▲
Why enterprises trust hardware-based security over quantum computing
(venturebeat.com)
4 points
by
m1ghtym0
4y ago
|
1 comments
7.
▲
by
m1ghtym0
4y ago
An alternative to using own servers, which are not feasible for every company would be isolated and encrypted GitLab/GitHub deployments as described here: https://dev.to/flxflx/setting-up-a-confidential-gitlab-333h
8.
▲
In the next 7–10 years all clouds will be confidential clouds
(medium.com)
1 points
by
m1ghtym0
4y ago
|
0 comments
9.
▲
by
m1ghtym0
4y ago
Yes and no. It's a technological problem in the sense that there is a technological solution to this. See the Delos Cloud for example: https://www.handelsblatt.com/technik/it-internet/delos-cloud... However C
10.
▲
by
m1ghtym0
4y ago
Maybe they should deploy it via Constellation https://github.com/edgelesssys/constellation
11.
▲
What's your take on Zero-Trust for Kubernetes?
(venturebeat.com)
1 points
by
m1ghtym0
4y ago
|
0 comments
12.
▲
Azure Open-Source Confidential Kubernetes
(techcommunity.microsoft.com)
1 points
by
m1ghtym0
4y ago
|
0 comments
13.
▲
by
m1ghtym0
4y ago
What's your favorite take-away?
14.
▲
The Nuggets from MS Ignite and Google Cloud Next
(siliconangle.com)
1 points
by
m1ghtym0
4y ago
|
1 comments
15.
▲
by
m1ghtym0
4y ago
I hear that argument a lot. The key aspect here is remote attestation. Often enough CC is only seen from a memory encryption angle. It's maybe not straight forward, however remote attestation and of course the verifiability of such att
16.
▲
by
m1ghtym0
4y ago
You are correct, KMS implement important aspects of key management. The conclusion of the article is not replacing KMS with Confidential Computing. Instead, the idea is to combine them to achieve the ultimate goal of protecting sensitive da
17.
▲
by
m1ghtym0
4y ago
The thing you're looking for is called remote attestation. That means there is a direct channel from the hardware to the user that attests the confidentiality and integrity of the VM. Such attestation statement is signed by a key burne
18.
▲
Bring your own key was a lie
(blog.edgeless.systems)
33 points
by
m1ghtym0
4y ago
|
27 comments
19.
▲
by
m1ghtym0
4y ago
BYOK was a lie because it was only protecting keys at rest. When the environment in use becomes accessible to so many actors, customers lose control of their keys and identities once they are accessible to that hostile environment. “Bring y
20.
▲
by
m1ghtym0
4y ago
Applying Kata for TEEs and bringing Confidential Computing to Kubernetes is an awesome concept. I'm less sold on the original reverse idea of using VMs instead of containers for enhanced host security in cloud-native deployments. Thoug
21.
▲
How the largest open source companies got their first 1k community members
(pchase.substack.com)
2 points
by
m1ghtym0
4y ago
|
1 comments
22.
▲
by
m1ghtym0
4y ago
A deep dive into how Hashicorp, Confluent, Databricks, and CockroachDB grew their communities in the early days.
23.
▲
Google Cloud launches Confidential Space to enhance joint data analysis
(venturebeat.com)
2 points
by
m1ghtym0
4y ago
|
0 comments
24.
▲
My favorite tools to keep a zero vulnerabilities posture
(blog.edgeless.systems)
1 points
by
m1ghtym0
4y ago
|
0 comments
25.
▲
by
m1ghtym0
4y ago
From a security perspective, Constellation is designed to keep all data always encrypted and to prevent any access from the underlying (cloud) infrastructure. This includes access from datacenter employees, privileged cloud admins, and atta
26.
▲
Constellation: The First Confidential Kubernetes Distribution
(thenewstack.io)
11 points
by
m1ghtym0
4y ago
|
1 comments
27.
▲
Why Developers Like Constellation
(stackshare.io)
1 points
by
m1ghtym0
4y ago
|
0 comments
28.
▲
by
m1ghtym0
4y ago
Well, it's not about compute power and whether you can run things on-prem. It's about sharing, synchronizing, and collaborating on data. That's where PETs open up new opportunities.
29.
▲
by
m1ghtym0
4y ago
thanks! will try there
30.
▲
by
m1ghtym0
4y ago
> Today, conventional wisdom suggests that an additional performance acceleration of at least another 1 million times would be required to make FHE operate at commercially viable speeds. At the moment, Cornami is the only commercial chip
More ›