Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

So I believe this rules out a supply chain attack where someone buys a bunch of CPUs, infects them, repackages them and sells them as new.

If you can't do that, then this feels significantly less problematic.



They could potentially do that to motherboards, but they could do that anyway (physical access would give you as much access to flash as this vulnerability does). But yes, CPUs should be fine in that respect.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: