I ran across this article from last year again and it got me thinking. The article is a story about how a hardware hacker was able to hack hard drive firmware, first to upload his own firmware, but also to take advantage of the embedded controller, and even install linux on the controller. If you haven't read it it's fairly impressive. [Ed's Comment: I would go further and say that it is a amazing piece of hacking, in the traditional meaning of the word.]
It seems that lately there have been a lot of vulnerabilities targeting embedded peripherals. Those in the article come to mind, also badUSB, and some IPMI vulnerabilities.
What do you think? Are the number of attack vectors targeting embedded peripherals a consequence of more powerful controllers? Worse software? More sophisticated attackers? Or just a random occurrence?
(Score: 3, Interesting) by cosurgi on Saturday November 29 2014, @10:40PM
Whoa wow, that's an amazing hack. Also I couldn't help but notice that this guy was using ROXterminal :) Which is part of my favorite desktop environment, which I am using since 1999: sawfish+rox (also I was sawfish maintainer in year 2007-2009 :)
#
#\ @ ? [adom.de] Colonize Mars [kozicki.pl]
#