3 ms·
The traffic has to travel over wire as TCP/IP, regardless of what device generated it. It has to travel over wire somewhere! The device can’t magically communic
by simplecomplex 8y ago
The traffic has to travel over wire as TCP/IP, regardless of what device generated it. It has to travel over wire somewhere! The device can’t magically communicate with China. Any outbound firewall could detect that, especially traffic going to ports that aren’t even open/used.
- true_religion 8y agoI think the idea is that the traffic goes over intranet to another computer that they legitimately control within the datacenter, then goes to China. Or if they can insert themselves into the maintenance team, they can retrieve their chips at a later date.
- lostmsu 8y agoAren't we talking about virtual machines running on this hardware?
- Filligree 8y agoUnless, just to provide a nightmare scenario, the routers that would detect it are also compromised.
- paulie_a 8y agoThe NSA did that, they literally intercepted routers en route. I'm guessing other agencies have too. Or you can just use the default credentials Cisco is addicted to leaving in their code.
- simondedalus 8y agoi gave you the benefit of the doubt when i read your earlier comment, but this doubledown shows you're extremely naive / have no experience with the space. you realize there are entire industries (plural) premised off the fact that you can't just throw up "any firewall" and detect this kind of thing, no? can you imagine how it would go down if a major corporation like apple experienced a hardware hacking based infrastructure breach, contracted a cybersecurity company, and the tech heading their case asked them like "well were you making sure to check which ports were open?"