5 ms·
Sounds like a good move to me. Intel has been awfully quiet about this.
by salient 13y ago
Sounds like a good move to me. Intel has been awfully quiet about this.
- jrockway 13y agoNot to accuse Intel, because I have no idea whether or not they have backdoors, but do you want them to say: "Yes, we intentionally sold faulty products that put all your customer data at risk, and you at risk of a lawsuit for not protecting your customers' data." Not so good for the share price, methinks.
- kabdib 13y agoEspecially when Snowden outs them :-)
- numbsafari 13y agoMakes me wonder, though... if the government forces intel to sell everyone defective products does that violate our 4th amendment rights? Do I, as an individual, have standing to sue the federal government because they intentionally weakened a product I purchased, potentially exposing me to other kinds of threats? What about someone who has actually been victimized by an exploit of a backdoor that was ordered installed by the government? Would they have standing to sue for damages that resulted? I only ask because I know "standing" has been an important issue in many of the cases related to these abuses. Most of the suits have failed because the plaintiffs were found to lack standing for one reason or another.
- jrockway 13y agoNo. In general, you may only sue the federal government when the federal government gives you permission to sue them. http://en.wikipedia.org/wiki/Sovereign_immunity_in_the_United_States#Federal_sovereign_immunity http://en.wikipedia.org/wiki/Sovereign_immunity_in_the_Unite...
- protomyth 13y agoYou can file a lawsuit saying your rights were violated (the ACLU has done it multiple times). You can also sue under The Federal Tort Claims Act ("FTCA"). The Federal Government is not immune from rights violations.
- drzaiusapelord 13y agoIn theory, Intel could be under some kind of directive or warrant to do this and it would be illegal for them to even disclose its existence, let alone protest against it.
- kps 13y agoI don't know whether Intel the corporation has said anything, but the responsible hardware engineer has personally stated there is no backdoor. http://lists.randombit.net/pipermail/cryptography/2013-September/005205.html http://lists.randombit.net/pipermail/cryptography/2013-Septe... If I had an application where it mattered, I would pick RDRAND over a software system that was not reviewed, built, verified, and continuously monitored by someone I trust. It's implausible that RDRAND on my hardware is implemented differently from the hundreds of thousands of other copies of the core, or differently from the way it was yesterday. I have no such confidence in /dev/random. That doesn't mean there's anything wrong with FreeBSD's RNG; it only means that it's harder to be sure I'm actually using it.