• datendefekt@feddit.org
    link
    fedilink
    English
    arrow-up
    46
    ·
    5 days ago

    Goodacre catalogues this and related scenarios in a 37-page risk assessment prepared for CISOs evaluating Intel vPro hardware connected to corporate networks. Its conclusion is blunt: connecting an untouched-ME device to corporate resources “exposes the organization to a class of compromise that defeats the host security stack in its entirety.”

    I hear a lot of concern about backdoors in Chinese hardware but this is just dystopian.

    • themurphy@lemmy.ml
      link
      fedilink
      English
      arrow-up
      42
      ·
      5 days ago

      I’m convinced that all the “China is tracking you!!” is a giant deflection for how much the US is tracking.

      They have always been the worst offender, and Snowden was only a warning for something that has been going on for many years.