zlacker

[parent] [thread] 2 comments
1. 15155+(OP)[view] [source] 2025-09-29 08:32:00
Or, you know, a $0.02 write protect switch on the motherboard.
replies(1): >>rcosti+ed
2. rcosti+ed[view] [source] 2025-09-29 11:12:29
>>15155+(OP)
The switch alone does not provide security if the supply chain is compromised. I believe a malicious actor could act along this chain by setting the switch to ON and rewriting the firmware, just like they would replace a removable chip. A step in this direction has been taken by "Server Configuration Lock" (e.g. HPE) while servers are in transit
replies(1): >>sim7c0+Hv
◧◩
3. sim7c0+Hv[view] [source] [discussion] 2025-09-29 13:26:14
>>rcosti+ed
its not about supply chain compromise. its about device compromise.
[go to top]