Hacker Newsnew | past | comments | ask | show | jobs | submit | pajko's commentslogin

So do the pre- and post-install scripts of Debian packages. The problem is not this but the lack of verified and controlled release channel.

... who converted Windows 11 into Emmentaler: https://deadeclipse666.blogspot.com/2026/04/



It does not matter. Who's gonna stop them adding a new backdoor in a later Windows Update(TM) ? T this point they are not to be trusted at all.


Microsoft doesn't need a back door, they can literally sign a new bootchain with the same certificate and install them on your computer.

This is a bug / vulnerability, not a back door.


"Who's going to stop <any OS or app> from inserting a backdoor at some random point in the future? They are not to be trusted at all."

https://en.wikipedia.org/wiki/Slippery_slope


"No, TPM+PIN does not help, the issue is still exploitable regardless, I asked myself this question, can it still work in a TPM+PIN environment ? Yes it does, I'm just not publishing the PoC, I think what's out there is already bad enough."

https://deadeclipse666.blogspot.com/2026/05/were-doing-silen...


Interesting. If TPM+PIN does not help, then what stands between Bitlocker and TPM unsealing the key?




... as it has been designated as a supply chain risk.


You have causality backwards

USG signed a contract → USG wanted to coerce Anthropic into changing the terms post facto → USG decide to use supply chain risk designation to achieve this

We know this for a fact because they simultaneously floated using DPA or FASCSA to achieve their desired coercion.


PuTTY


That's a Windows app.


PuTTY is absolutely available for Linux. On Debian-based distros it’s just a `sudo apt install putty` away. But why?


One possibility is to run its terminal emulation somewhere else. But of course terminal emulators are a dime a dozen on Linux.


There's bigger issue than stuffing. In "rural" Hungary chain voting is customary where people are taken to the voting place by gangs and are either awarded with some money or a bag of potatoes, or threatened to be beaten if they do not comply. The first voter of the chain goes in, takes the ballot, hides it and takes it out. It is then pre-filled by the gang. The next voters take the prefilled ballot in, throw it in the box and bring a fresh clean ballot out, and so on...

In other cases, people get money/bag of potatoes for a photo of their correctly filled ballot.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: