logoalt Hacker News

sph10/12/20241 replyview on HN

They sell this vendor lock-in "feature" as enhanced security?



Yes. It keeps the board from booting if the firmware is replaced with a version not signed by the board manufacturer (i.e. so an attacker can’t replace it with a version that does nefarious things). Preventing CPU reuse in other boards is just an (unintentional?) side effect.

show 1 reply