2025-04-15 Security HC ordinary meeting

2025-04-15 Security HC ordinary meeting

Date

Apr 15, 2025

Disclosures

2025-AI-Disclousers-Female.mov

Participants

Name

Affiliation

Name

Affiliation

Jiatong Chen

?

Kun Lu

?

Ziquan Wang

?

Alvin Chang 

Andes Technology Corporation

skye yuan 

BOSC

Paul Elliott 

Codasip s.r.o.

Nick Kossifidis 

Foundation for Research and Technology - Hellas (FORTH)

Ben Laurie 

Google LLC

Halpern Joseph

Individual

Cay Blomqvist

Individual

Luís Fiolhais 

Individual

Markku-Juhani Saarinen

Tampere University

Shuwen Deng

Individual

Victor Lu

Individual

Ronan Lashermes 

Inria (French Institute for Research in Computer Science and Automation)

Tuo Li

Institute of Computing Technology

Peinan Li

Institute of Information Engineering, CAS

Guerney Hunt

International Business Machines Corporation

baskaran chidambaram 

MIPS

Geoffrey Thorpe 

MIPS

Hany Ragab

Qualcomm, Inc.

Andrew Dellow 

Qualcomm, Inc.

Roberto Avanzi

Qualcomm, Inc.

Ravi Sahita 

Rivos Inc

Yanru Li 

Samsung

Paul Heath 

Seagate Technology LLC

Nicolas Brunie 

SiFive

Perrine Peresse

SIFive

Yann Loisel 

SiFive

Ben Chen 

Southern University of Science and Technology

Jinting WU 

SUST

Ruud Derwig 

Synopsys, Inc

Georgios Christou 

Technical University of Crete

Daniel Gracia Pérez 

Thales SA

Franz Fuchs

University of Cambridge

Simon Moore 

University of Cambridge

Greg Favor

Ventana Micro Systems

Radim Krčmář 

Ventana Micro Systems

Agenda

We have no voting agenda items this week  - so the meeting may be short, continuing last weeks discussions on World guard.

 The discussion has continued on the list, including the naming of the fast track extension.

 Multiple members have requested the extension name avoid the term ‘WorldGuard’ as this is closely associated with one vendor. It has been suggested to refer to ‘Risc-V-Worlds’ at the system isolation level, and ‘World-ID’ for the ISA extension name. 

 Suggestions will be welcomed on the list or in the meeting.

 

Presentations

Title

Presenter

File

Title

Presenter

File

1

 

 

 

2

 

 

 

Notes & Action Items

 

Ben Laurie brought up a concern about ASN.1 parser in the unified discovery plan. This is a complex parser, likely to have lots of bugs and issues, and even a reduced subset doesn't solve the issue, as folks will likely use a full parser with the bugs, as it just works. Some discussion on using device tree or other existing mechanisms instead, and avoid a datastructure. Not in the security HC remit to define how this should be done at a high level. @Geoffrey Thorpe asked for a consistent set of rules or policy, that can be used to justify the objection and would be applicable across all extensions. @Ravi Sahita suggested asking the unified discovery TG if parser bugs were in their threat model, with the expectation this can lead to a discussion and security HC guidance.

 

Discussion to continue offline, with recommendations. @Andrew Dellow to send an email to the mailing list to start the thread.
no discussion on Worldguard -

Standard_2.png

RISC-V International