Secure enclaves may still leak keys and weights through side channels or microscopy
geoffreyirving · x · 2026-07-25
In reply to the enclave idea, Irving says the main limitation is that the bulk of computation still happens unencrypted.
He warns that enclave-based systems may still be vulnerable to side channels like timing attacks and to physical attacks with advanced microscopy, which could expose keys or weights. In other words, enclaves help, but they are not a complete answer on their own.
Related event: Geoffrey Irving Outlines Three-Layer Approach to AI Treaty Verification(7 posts)→
More from Safety
- Op-ed: the ">10% extinction" narrative is liability evasion — AI is just software, and the vendor is the defendant — gerardsans · 2026-09-11
- Economist Warns US Collective Action Could 'Regulate AI Progress Out of Existence' — paulnovosad · 2026-09-11
- "Beware of the Self-Righteous": Anthropic Slammed for Accessing Users' Private Data — aiamblichus · 2026-09-11
- Anthropic threat report claims Houthis used Claude for weapons development and guided-rocket tests — KoseteBamse · 2026-09-11
- OpenAI asks Congress whether an industry-wide AI slowdown would be legal — The Decoder · 2026-09-11
- Author retracts 'a16z partner calls for nationalising frontier AI' post: likely a troll — S_OhEigeartaigh · 2026-09-11