• Alphane MoonOPM
    link
    English
    106 days ago

    To be honest, the article wasn’t very clear on this, but do we know that the “secondary die hidden under the primary microcontroller” was for malicious purposes?

    I would expect a pen-testing cable to be for more sophisticated than a regular USB-C cable.

    It seems like tomshardware is hinting at the possibility of supply chain attacks, without referencing any newly identified examples.

    • @halcyoncmdr
      link
      English
      17
      edit-2
      6 days ago

      I’m not sure I understand what you’re trying to ask.

      The cable exists for malicious purposes. That’s the purpose of the cable.

      The article seems to be just comparing it to standard cables which just have the circuitry for charging. Since this cable has additional capabilities, can host its own wifi network, etc. it needs additional controllers and antennae to support that.

      Actually reading more of the article… It seems like the author doesn’t really know what the OMG cable is and is trying to frame it as some sort of unexpected thing. Comparing it to a standard USB cable makes no sense.

      • Alphane MoonOPM
        link
        English
        5
        edit-2
        6 days ago

        I thought the pen-testing cable was compromised. Which would make for an interesting supply chain attack.

        The article wasn’t really clear on this, but I did get that they were simply referring to the large amount of circuitry.

        • @halcyoncmdr
          link
          English
          66 days ago

          Yeah it’s a weirdly written article if it’s just comparing the OMG cable to regular ones. Doesn’t really explain well what they’re trying to say.

        • @[email protected]
          link
          fedilink
          46 days ago

          At first I was going to say that’s silly, why wouldn’t they target more volume.

          But then I realized that it would be interesting to have a focused ability to see what black hats and whitehats are working on at any given time.

          And yeah that is an interesting angle…

          • Alphane MoonOPM
            link
            English
            16 days ago

            Not to mention mass scale HW supply chain attack would likely have massive geopolitical and economic risks.