2 ms·
>How does GP know that everything is actually being provided unmodified, without any backdoors? They don't need to. That is precisely the point. The entire sof
by bubblethink 7y ago
>How does GP know that everything is actually being provided unmodified, without any backdoors?
They don't need to. That is precisely the point. The entire software stack is open source and reproducible (except a few KBs of Intel ME). As a press release, the linked post is brief. If you wish to read more on the technical aspects, here are all the constituent projects:
https://coreboot.org/ https://coreboot.org/
https://github.com/osresearch/heads/ https://github.com/osresearch/heads/
https://github.com/corna/me_cleaner https://github.com/corna/me_cleaner
https://github.com/nitrokey https://github.com/nitrokey
A good talk if you prefer video: https://media.ccc.de/v/33c3-8314-bootstraping_a_slightly_more_secure_laptop https://media.ccc.de/v/33c3-8314-bootstraping_a_slightly_mor...
- andy_ppp 7y agoOkay this is interesting then, thanks for informing us better about what this all means and why we don't 100% have to trust the OEM of this hardware.