The latest news coming from researchers that discovered
Spectre vulnerability [webmasterworld.com] is a way to run malicious code out of reach of antivirus software. As part of Intel's feature of SGX (Software Guard eXtensions) on Skylake processors, it allows programs to compile enclaves where the code and data are protected for confidentiality and integrity.
The researchers are using that robustness for nefarious purposes and considering the question: what happens if it's the code in the enclave that's malicious? SGX by design will make it impossible for antimalware software to inspect or analyze the running malware. This would make it a promising place to put malicious code.
[
arstechnica.com...]
Malicious Code on Intel Processors Can Run Out Of Reach of Antivirus Software