Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

This sounds like something out of a movie. I would like some technical details how this is supposed to work with only a 6 lead chip.


Most likely it is using SPI https://en.wikipedia.org/wiki/Serial_Peripheral_Interface, that requires four pins and the two remaining ones are power and ground. SPI what is used to access EEPROMs and flash memory, so an attack that you can do is daisy chain such a device in the path to the EEPROM the board management controller uses as its firmware storage. Then you can very easily insert your own instructions and get the board management controller to execute whatever you want.


Serial bus magic.


It seems surreal to me that this could be real. And yet I'm not surprised.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: