Hacker News new | ask | show | jobs
by nickzana 1404 days ago
Isn't it better to leave them exposed and make it easier for security researchers who genuinely want to test the chip? Someone interested in and capable of developing and using/selling an exploit won't be deterred by needing a special cable to get a UART console, whereas a security researcher might appreciate the simpler access.

So long as it doesn't weaken the actual security model, companies should make their products as easy to analyze as possible imo.

1 comments

Then sell a dev unit surely, not a consumer grade device...