[ / / / / / / / / / / / / / ] [ dir / animu / asmr / rel / strek / sw / travis2k / vore / zoo ][Options][ watchlist ]

/tech/ - Technology

You can now write text to your AI-generated image at https://aiproto.com It is currently free to use for Proto members.
Name
Email
Subject
Comment *
File
Select/drop/paste files here
Password (Randomized for file and post deletion; you may also set your own.)
* = required field[▶ Show post options & limits]
Confused? See the FAQ.
Expand all images

File (hide): 95e7c590f8399a9⋯.png (1.35 KB, 100x100, 1:1, logo.png) (h) (u)

[–]

 No.889609>>889620 >>889936 >>889969 [Watch Thread][Show All Posts]

Whilst going full libreboot and modding a QX9300 into a T500, slow hdd storage is painful too a price to remain full libre.

We know for a fact, that all Sandforce controllers and basically every product from WD and Seagate are backdoored.

You can isolate it using USB 2.0, but it's too slow.

Non Western Sata SSDs it is then.

All chink government PCs use Renice and/or Runcore SSDs, since the chinks wrote their own controller and built it themselves backdoor free.

I have seen those two recommended often.

Anyone got experience or with those? Any other suggestions?

 No.889617>>889621

Is there any proof or it's just speculation?


 No.889620>>889623

>>889609 (OP)

What makes you believe they don't have gook backdoors built in?


 No.889621

>>889617

TechPowerup article

>https://www.techpowerup.com/209925/nsa-hides-spying-backdoors-into-hard-drive-firmware

Motherboard article:

>https://motherboard.vice.com/en_us/article/ypwkwk/the-nsas-undetectable-hard-drive-hack-was-first-demonstrated-a-year-ago

The Libreboot page explains why USB 2.0 doesn't have DMA and how Sata is vulnerable

>https://libreboot.org/faq.html#hddssd-firmware

Also saw a IT-Security Blog doing a great explanation in detail, can't find it right now.


 No.889623>>889627 >>889628 >>889644 >>889743 >>890079

>>889620

I don't.

The choice is between a Highly Likely backdoored, supported by evidence western drive and a drive that may or may-not have backdoors eastern one.

If I had the choice, I would rather give my data to China instead of the NSA.


 No.889627>>890079

>>889623

That's like picking between AIDS and HIV, you'll still fucking die


 No.889628>>889633

>>889623

Also just get a Samsung drive


 No.889633

File (hide): b1b07a1060c36e9⋯.png (Spoiler Image, 7.08 KB, 350x350, 1:1, 036.png) (h) (u)

>>889628

>backdoored by both sides


 No.889644>>889739 >>890071

>>889623

>If I had the choice, I would rather give my data to China instead of the NSA.

Let's say I'm Russian. What is worse, NSA or China? Or it doesn't matter?

(Now that the Russian puppet was made your president, will it mean that NSA shares all data with FSB or what?)


 No.889651


 No.889657>>889661

File (hide): 6363b08bf4b9702⋯.png (1.3 MB, 2048x881, 2048:881, seagate IDE 3.5 arrow.png) (h) (u)

Nice Redpilling LARP, OP. In an earlier age, you'll be wearing a black trenchcoat to school.

All HDDs since the mid 1980s--before you were fucking born-- have had some kind of direct UART interface to the firmware.


 No.889661>>889927

>>889657

That's quite a ways off from harddrives having ARM based micro controllers, which can run linux being installed on every storage device, with proofs from Intel ME running programs which can read out your RAM on even less capable ARM micro processors.


 No.889722

Best way to protect against harmful firmware in your drives is to:

>encrypt the filesystem

This doesn't nessairly protect you, but heavily reduces risk of less sophisticated attacks like cacheing or altering files in transfer.

>configure libreboot/coreboot to only run signed kernel images

This ensurses that the drive has not tampered with your kernel, which is one rout it could take to get net access. If you use full disk encryption including your /boot partition, this might not be nessary. If you don't use libreboot/coreboot and just configure grub on mbr/efi to check signatures then it's not really protecting much, as the kernel and keys are both being read from the drive, though it might be worth doing since it's easy and might thwart some simple scripted attacks that didn't accout for signed images. If you have a TPM and use UEFI booting you could sign the grub efi image and enable secureboot, which should prevent the drive from altering the signature file, thus being effectivly like libreboot/coreboot in regard to signed kernels. UEFI is it's own can of worms in regard to security though, and some question the integrity of TPMs.

>connect the drive over USB or use a cpu/mobo with iommu features enabled

This will prevent the drive from getting direct memmory access (and thus net access, access to encryption keys, access to pretty much what ever it wants)

If you do all of these it still isn't perfect, but it prevents the drive from preforming more trivial exploits and from getting access to system memmory or a network stack. Thus redusing the risk to fairly sophisticated, probobly targeted attacks that require physical access to recover data from.


 No.889739>>889744

>>889644

I don't think it matters honestly, especially since Russia puppet states have been in short supply since the collapse of the soviet union. Unless ruskies are the real juden.


 No.889743>>889753

>>889623

>I'd rather get fucked in the mouth than in the ass

Why though.


 No.889744

>>889739

Russia has always been under juden control since 1917


 No.889753

>>889743

in ass it hurts more


 No.889927

>>889661

Oh, you know very little about harddrives.

There's been a Whole-Disk encryption feature in ATA drives, 'ATA Security', and later on, SED, since forever. The TLAs have had the facilities to re-engineer the drive's firmware so that the ATA password and the like was stored in normally inaccessible areas of disk, making it an easy job to thwart Teh Commies or Teh Druglords. Quantum were accessed in ?2001 of installing trojaned firmware at the factory on the behest of the CIA.


 No.889936

File (hide): 8dca5d8a5491baa⋯.png (2.1 MB, 1600x1513, 1600:1513, 1491722624597.png-15203050….png) (h) (u)

>>889609 (OP)

>chinks wrote their own controller

>backdoor free


 No.889969

File (hide): ecdd681d44740b8⋯.jpg (41.47 KB, 500x335, 100:67, 500px-Cosmos-board.jpg) (h) (u)


 No.890071

>>889644

Hey, remember when China was selling to Russia consumer electronics (irons and microwaves and such) with actual botnet inside?

http://archive.fo/6u3oo

Also considering how China and Russia share tips on how to censor the internet, although China probably just wants to sell their DPI hardware to be honest, I'd prefer to take my chances with NSA.


 No.890079>>890086 >>890137

>>889627

I'd just like to interject for a moment. AIDS isn't a disease unto itself, but rather one of the symptoms of HIV.

>>889623

>If I had the choice, I would rather give my data to China instead of the NSA.

Why? I would rather give it to the NSA, because they probably won't sell it to everyone. ofc, they could sell it to foreign governments, some random company could sell it to anyone who has the money. And I think NSA would store my data securely, unlike some random company.


 No.890086

>>890079

>AIDS isn't a disease unto itself, but rather one of the symptoms of HIV.

that's the joke


 No.890137>>892323

>>890079

> Why? I would rather give it to the NSA, because they probably won't sell it to everyone. ofc, they could sell it to foreign governments, some random company could sell it to anyone who has the money. And I think NSA would store my data securely, unlike some random company.

Are we advocating now for how the NSA is keeping our data save and secure? What even is this.


 No.892323>>892329

File (hide): 55be63d1d36a4b8⋯.png (73.47 KB, 420x294, 10:7, nsabackup.png) (h) (u)

>>890137

You might be overthinking it. Thing aren't really that bad!

Think of all those great cloud services provided to you by Google and others.

How would you do backups without them?

If a meteor hit your house, all your data would be gone!!!!!!!!!!!!!!11111111

xDDDDD


 No.892329>>892353

>>892323

>If a meteor hit your house, all your data would be gone!!!!!!!!!!!!!!11111111

What about offline friends keeping a copy on a HDD?


 No.892353

>>892329

>8/tech/nicians

>having friends

>implying

Fortunately, safe deposit boxes at the bank are a thing.




[Return][Go to top][Catalog][Screencap][Nerve Center][Cancer][Update] ( Scroll to new posts) ( Auto) 5
26 replies | 6 images | Page ?
[Post a Reply]
[ / / / / / / / / / / / / / ] [ dir / animu / asmr / rel / strek / sw / travis2k / vore / zoo ][ watchlist ]