Conversation
Notices
-
!OpenHardware may not be sufficient. Maybe the microcode which loads the new firmware on the drive controller has been compromised, altering the firmware as it's being loaded... "Reflections on Trusting Trust" by Ken Thomson is required reading: http://cm.bell-labs.com/who/ken/trust.html
- kat repeated this.
-
Also, this has now started being taken much more seriously. Watch this from the #31c3 https://www.youtube.com/watch?v=5pAen7beYNc last year "Reproducible Builds - Moving Beyond Single Points of Failure for Software Distribution [31c3] "