Hacker News new | ask | show | jobs
by myself248 855 days ago
Exactly. Control of the management/cellular network is not _precisely equivalent to_ control of every machine/phone attached to it, you still have to attack the BMCs/BBs.

But I think it's safe to assume there's always a BMC/BB vuln, especially if the firmware development for it takes place in that same adversary's country. Not having the adversary on your management network in the first place is probably sane.