01▲I found a KVM guest-to-host heap corruption bug and someone else got there first blog.himanshuanand.com Writeup of a KVM SEV-SNP page-state bug that can corrupt host heap from a guest, because even virtualization has bug reports.cloud-securityconfidential-computingheap-corruptionkasankernel-securitykvmmemory-corruptionoobsev-snptwittervm-escape0 pts/bootstrapd/2 days ago/1 comment
02▲Ubuntu’s virtualization hardware enablement (HWE) stack: a new model for confidential computing enablement ubuntu.com Ubuntu outlines a rolling HWE stack for virtualization, extending LTS support to QEMU, libvirt, and firmware for SEV-SNP and TDX, because...confidential-computingfirmwarehwekvmlibvirtprivacyqemutwittervirtualization0 pts/evanholt/9 days ago/discuss