Hacker News new | ask | show | jobs
by tzmudzin 1327 days ago
Closed source, so we can speculate (or try to reverse engineer/break it).
1 comments

So at best we have cynicism / paranoia regarding Apple's T2.
By a 'zero trust' security philosophy, anything short of completely open source is inherently untrustable.

You may not be practicing that philosophy, but that doesn't make those who do "paranoid" any more than corporations implementing PCI-DSS controls.

Security does not work retroactively, only proactively.

That's all anyone has against IME, also. And BridgeOS isn't any more secure. There are tons of known flaws in it.
Part of it runs bridgeOS. The Secure Enclave runs something else altogether called sepOS.

https://support.apple.com/guide/security/secure-enclave-sec5...