• Garrett: To update blobs or not to update blobs

    From LWN.net@1337:1/100 to All on Tue Mar 3 14:45:07 2026
    Garrett: To update blobs or not to update blobs

    Date:
    Tue, 03 Mar 2026 14:41:43 +0000

    Description:
    Matthew Garrett examines
    the factors that go into the decision about whether to install a
    firmware update or not. I trust my CPU vendor. I don't trust my CPU vendor because I want
    to, I trust my CPU vendor because I have no choice. I don't think
    it's likely that my CPU vendor has designed a CPU that identifies
    when I'm generating cryptographic keys and biases the RNG output so
    my keys are significantly weaker than they look, but it's not
    literally impossible. I generate keys on it anyway, because what
    choice do I have? At some point I will buy a new laptop because
    Electron will no longer fit in 32GB of RAM and I will have to make
    the same affirmation of trust, because the alternative is that I
    just don't have a computer.

    ======================================================================
    Link to news story:
    https://lwn.net/Articles/1061048/


    --- Mystic BBS v1.12 A49 (Linux/64)
    * Origin: tqwNet UK HUB @ hub.uk.erb.pw (1337:1/100)