1 |
On Tue, Dec 11, 2018 at 7:49 PM Neil Bothwick <neil@××××××××××.uk> wrote: |
2 |
|
3 |
> > So tell us what is your perfect country for hardware manufacturing? |
4 |
> |
5 |
> There isn't one as you can never be sure. You are presenting hope, and |
6 |
> maybe likelihood, as certainty when this does not exist. |
7 |
> |
8 |
|
9 |
Datapoint - looks like Bloomberg is starting to walk back its complete |
10 |
support of the original implant story. |
11 |
https://www.bloomberg.com/news/articles/2018-12-11/super-micro-says-third-party-test-found-no-malicious-hardware |
12 |
Also they have assigned another reporter that was not involved in the |
13 |
original story, to attempt to verify the claims of the original story... |
14 |
|
15 |
Others have made the point that the Amazon and Apple denials left them no |
16 |
wriggle room in the event that implants are found and shareholders launch a |
17 |
class action, and that this indicates a genuine belief that there are no |
18 |
backdoors. |
19 |
|
20 |
Considering risk; |
21 |
If you are of interest to a nation state, you're pretty much stuffed |
22 |
anyway, and I think this discussion has been around implants made via |
23 |
Chinese government action. |
24 |
The management processor issue is a real problem because they're not well |
25 |
understood, on by default, cant be (or cant easily) be disabled, and has to |
26 |
be software maintained. However, given all the other issues like the never |
27 |
ending stream of security issues in software, i'm not sure it changes the |
28 |
overall risk profile significantly. Only time will tell. |
29 |
|
30 |
Sorry for further polluting your thread Dale :) |