> It can until there's hard hardware chain-of-trust enforcement (like UEFI) with signed images.
And then hackers will graduate to side-channel attacks... it's a game of cat and mouse. The best bet, IMHO, is to make the cost of cracking exceed the value of what's being cracked.