Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> We need a way to manufacture our own hardware. Just like we can already write our own software.

We may write code but we didn't write the compiler which compiles the code. We didn't develop the runtimes, kernels, etc our software is dependent upon. The security, reliability and trustworthiness of the entire software world is dependent on trust.

You should read Ken Thompson's article on "Reflections on Trusting Trust"

https://dl.acm.org/doi/pdf/10.1145/358198.358210



It still can be detected if you have two identical compilers with and without the backdoor. So we should collect all versions.


Also, unless your compiler back door is functionally an AI, sufficiently large changes to the software will break its backdoor inserting routines.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: