4 ms·
PS - an interesting post from slashdot 2010 about this topic: http://hardware.slashdot.org/story/10/10/29/1456242/hiding-backdoors-in-hardware http://hardware.
by j2d3 13y ago
PS - an interesting post from slashdot 2010 about this topic:
http://hardware.slashdot.org/story/10/10/29/1456242/hiding-backdoors-in-hardware http://hardware.slashdot.org/story/10/10/29/1456242/hiding-b...
quartertime writes
"Remember Reflections on Trusting Trust, the classic paper describing how to hide a nearly undetectable backdoor inside the C compiler? Here's an interesting piece about how to hide a nearly undetectable backdoor inside hardware. The post describes how to install a backdoor in the expansion ROM of a PCI card, which during the boot process patches the BIOS to patch grub to patch the kernel to give the controller remote root access. Because the backdoor is actually housed in the hardware, even if the victim reinstalls the operating system from a CD, they won't clear out the backdoor. I wonder whether China, with its dominant position in the computer hardware assembly business, has already used this technique for espionage. This perhaps explains why the NSA has its own chip fabrication plant."
- samstave 13y agoI was fist told about this backdoor by an ex employee of Cisco in 1997.
- j2d3 13y agoYeah, I worked at an ISP in 1998 and was told of the request / demand that we install Carnivore. Since then I've understood that everything is being recorded, but I've just carried on with everyone else with a kind of sad, resigned, "oh well" attitude... and have taken comfort in the fact that we're ALL subject to this, so - at least things are somewhat leveled out. Resistance seems futile.