Is it using AES-256-GCM? Their are good fast hardware implementations of it so would make sense. Even for a VM it shouldn't have too high a cost given that intrinsic have been in modern processors for some time.
Interestingly enough, differential power analysis can dump the keys from the chip and wikipedia purports the CIA already did this a few years back
|