dwyl / learn-security

:closed_lock_with_key: For most technology projects Security is an "after thought", it does not have to be that way; let's be proactive!
67 stars 10 forks source link

The Big Hack: How China Used a Tiny Chip to Infiltrate U.S. Companies #46

Open nelsonic opened 6 years ago

nelsonic commented 6 years ago

https://www.bloomberg.com/news/features/2018-10-04/the-big-hack-how-china-used-a-tiny-chip-to-infiltrate-america-s-top-companies via/comments: https://news.ycombinator.com/item?id=18138328

If you are new to security, this is worth reading. It's also the reason why you want to buy hardware either from reputable sources, or ideally only use Open Hardware in your IoT projects.

nelsonic commented 6 years ago

https://krebsonsecurity.com/2018/10/supply-chain-security-is-the-whole-enchilada-but-whos-willing-to-pay-for-it/ comments: https://news.ycombinator.com/item?id=18155517 links to: Reflections on Trusting Trust https://www.archive.ece.cmu.edu/~ganger/712.fall02/papers/p761-thompson.pdf