• tomalley8342@lemmy.world
    link
    fedilink
    arrow-up
    2
    ·
    13 hours ago

    You can trust hardware without trusting the vendor through auditing or analysis. In that case if you are aware of the hardware’s behavior then the additional blob updates are simply added uncertainty. Similarly if you are already aware of the security implications of the old blob and have appropriate countermeasures for it, then the new blob is also simply added uncertainty. The article notes this.