Supermicro BMCs had security vulnerabilities in the past as well -- which were presumably not purposefully planted.
Thanks, that makes sense for vulnerabilities. But what about "malicious chips"? I have such a hard time ignoring the fact that it modifies that phrase too. Should I be?
I don't think "malicious chips" was a quote from Apple - Apple's letter mentioned "the existence of malware or other malicious activity." adding "Nothing was ever found." - which is pretty broad.
Every webstory is quoting that same excerpt - if the entire letter was printed somewhere, I can't find it.
Thanks for pointing this out! Yeah, that is pretty broad.
It "modifies that phrase too", in what sense? Ostensibly the only way an unknown chip could be introduced into a data-center in such a way, and of all of them Apple's, would be with malicious intent, surely?