Before you ship a "security mitigation" ...
http://addxorrol.blogspot.com/2020/03/before-you-ship-security-mitigation.html [addxorrol.blogspot.com]
2020-04-10 00:48
During my years doing vulnerability research and my time in Project Zero, I frequently encountered proposals for new security mitigations. Some of these were great, some of these - were not so great.
I think Halvar is at times too dismissive of “raising the bar”, but he’s also the expert here, and these are not bad guidelines.
source: grugq