Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

My 2017 bottom shelf lenovo has SGX whether I like it or not.

In current year you can't really buy new hardware without secure enclaves[0], be it a phone, a laptop or server. Best you can do is refuse to run software that requires it, but even that will become tough when goverments roll out mandatory software that depends on it.

[0]: unless you fancy buying nerd vanity hardware like a Talos POWER workstation with all the ups and downs that come with it.



Intel killed SGX on consumer CPUs a while ago

https://news.ycombinator.com/item?id=31047888


Intel TXT is another related trusted execution/attestation/secure enclave feature, not sure how prevalent that one is, though


Pretty sure you can turn off SGX in the BIOS?




Consider applying for YC's Summer 2026 batch! Applications are open till May 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: