Reply to post: Re: This is so stupid

Supermicro spy chips, the sequel: It really, really happened, and with bad BIOS and more, insists Bloomberg

Cuddles

Re: This is so stupid

Indeed. It's particularly telling that all the support for the claims comes from security experts saying that it's plausible that something like this could be possible, or how they've seen and studied other examples of hardware compromise in the past. Because yes, attacks like this are technically posisble, and examples have actually happened. But the thing about those similar attacks that have been previously seen and studied is that they have, in fact, been seen and studied.

Bloomberg aren't claiming that this is a theoretical attack route that someone could be exploiting. They're claiming to have seen the actual physical chips used to do it. They're claiming that multiple different organisations, private, governmental and spy agencies, have all detected the activity and investigated the actual hardware, over a span of many years. It's not enough to show us some unrelated expert who says it might be possible to install a chip somewhere. You claim that lots of people have seen the actual hardware used to do this, so where is it? Put up or shut up.

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon