- 163comments
- 19comments
- 38comments
- 99comments
- 57comments
- 225comments
- 127comments
- 13comments
- 10comments
- 129comments
- 187comments
- 10comments
- 601comments
- 10comments
- 77comments
- 24comments
- 71comments
- 8comments
- —discuss
- 13comments
- 171comments
- 5comments
- 18comments
- 80comments
- 81comments
- 49comments
- 224comments
- 2comments
- 63comments
- 684comments
Not super practical, but neat attack
*currently
$300,000 next year.
We're already up to 400,000 just today.
In 5 years, either $400,000 or $50 and a hammer, depending on whether the core piece of the process aligns with the needs of some fast-growing consumer tech product like e.g. drones.
Some people have such and other toys just at work and can use it in spare time.
250k is not a bad investment for a company doing "reverse engineering as a service" - say 1k a pop to extract the firmware. Naturally, a good business idea for somewhere in the world with less regulations...
That is peanuts for a nation-state actor.
Sure, but if you’re defending against a nation state actor hopefully you aren’t expecting a raspberry pi to keep you secure.
The RP2350 is an inexpensive microcontroller IC with reasonable performance and some very useful (and somewhat unusual) features in its PIO blocks.
Why wouldn't a person build that into the heart of something important?
"Important" and "tamper proof against a determined adversary" are very different goals.
It reads as impressive defense. Meaning that it's presumably not possible to get root with physical access on a live 50$ device without 250k capital
There's always an XKCD... https://xkcd.com/538/
It needs to be updated. Modern evil planners don't even need a wrench since they already have most keys given to them in advance by everyone, including nerds
Care to expand?
That's reminiscent of when we first found out that if you opened up dram chips you could use them for imaging. Of course the scale at which this is done is extremely impressive.
Now it can be done for Apple iPhone. Apple is cooked.