zlacker

[parent] [thread] 1 comments
1. rcosti+(OP)[view] [source] 2025-09-29 11:12:29
The switch alone does not provide security if the supply chain is compromised. I believe a malicious actor could act along this chain by setting the switch to ON and rewriting the firmware, just like they would replace a removable chip. A step in this direction has been taken by "Server Configuration Lock" (e.g. HPE) while servers are in transit
replies(1): >>sim7c0+ti
2. sim7c0+ti[view] [source] 2025-09-29 13:26:14
>>rcosti+(OP)
its not about supply chain compromise. its about device compromise.
[go to top]