New ask Hacker News story: Ask HN: Security of Hardware Nano KVM
Ask HN: Security of Hardware Nano KVM
2 by WorldDev | 0 comments on Hacker News.
Hi all, I am looking at this product: [Sipeed NanoKVM-USB](https://ift.tt/59NKs0v). It would work very well for my need, but the company has a [terrible track-record for security](https://www.youtube.com/watch?v=plJGZQ35Q6I). So I am trying to approach it from a fully paranoid perspective. Can I use this device and protect myself fully from it? They provide the source code for the client side. SO that's fine, I can read that code, recompile it, and convince myself it is fully safe (I am only human, but let's assume it's good enough). I have strong doubts about the firmware side though. I am not familiar with the hardware side, but could there be any security issue there? The guys making the device are claiming ["there is no firmware code"](https://ift.tt/oHYk0aw). I do not understand that statement. Can anyone more knowledgeable shed some light as to what that means, and how I could verify it? They point to a link to corroborate that claim, but the link is broken. Thanks in advance for any insights!
2 by WorldDev | 0 comments on Hacker News.
Hi all, I am looking at this product: [Sipeed NanoKVM-USB](https://ift.tt/59NKs0v). It would work very well for my need, but the company has a [terrible track-record for security](https://www.youtube.com/watch?v=plJGZQ35Q6I). So I am trying to approach it from a fully paranoid perspective. Can I use this device and protect myself fully from it? They provide the source code for the client side. SO that's fine, I can read that code, recompile it, and convince myself it is fully safe (I am only human, but let's assume it's good enough). I have strong doubts about the firmware side though. I am not familiar with the hardware side, but could there be any security issue there? The guys making the device are claiming ["there is no firmware code"](https://ift.tt/oHYk0aw). I do not understand that statement. Can anyone more knowledgeable shed some light as to what that means, and how I could verify it? They point to a link to corroborate that claim, but the link is broken. Thanks in advance for any insights!
 
Comments
Post a Comment