Hacker News new | ask | show | jobs
by swader999 2135 days ago
Another vector for attack is shipping. Do you trust that this won't be intercepted and "customized" on its way to your address from the factory?
1 comments

They offer "anti-interdiction service"

https://puri.sm/posts/anti-interdiction-services/

From the site:

-Customized tamper-evident tape on the sealed plastic bag surrounding the laptop itself

-Customized tamper-evident tape on the internal, branded box

-Glitter nail polish covering the center (or all) screws on the bottom of the laptop

-Pictures of all of the above plus pictures of the inside of the laptop before sealing the bottom case

-All pictures sent to the customer out-of-band, signed by Purism and encrypted against the customer’s GPG key

-All coordination occurring over GPG-protected email