4 ms·
Is there a "tl;dr" equivalent for an article that's completely buried in initialism soup?
by kevindication 16y ago
Is there a "tl;dr" equivalent for an article that's completely buried in initialism soup?
- kevingadd 16y agoYou can remotely exploit bugs in network card firmware, and use that exploit to DMA read/write the host machine's memory AND overwrite the network card firmware permanently in EEPROM with firmware that you control. The article also explains some potential defenses against this sort of exploit but notes that none of them are currently viable.
- viraptor 16y agotl;dr - Nothing is secure. Even Intel's specially designed Trusted Execution Technology (close to the Trusted Platform idea) has known flaws. You can be hacked at levels which you cannot control (firmware). It's tricky (not a script-kiddie level exploit), but possible and many existing holes are not published/known, because researchers would rather do something interesting than uncover yet another bug using the same technique. If you have government-level influence, start complaining to Intel (et al.).