Huawei Laptop 'Backdoor' Flaw Raises Concerns (bbc.com)
A flaw in Huawei Matebook laptops, found by Microsoft researchers, could have been used to take control of machines. From a report: The "sophisticated flaw" had probably been introduced at the manufacturing stage, one expert told BBC News. Huawei is under increasing scrutiny around the world over how closely it is tied to the Chinese government. The company, which denies any collusion with Beijing, corrected the flaw after it was notified about it in January. Prof Alan Woodward, a computer security expert based at Surrey University, told BBC News the flaw had the hallmarks of a "backdoor" created by the US's National Security Agency to spy on the computers of targets. That tool was leaked online and has been used by a wide variety of hackers, including those who are state-sponsored and criminal gangs. "It was introduced at the manufacture stage but the path by which it came to be there is unknown and the fact that it looks like an exploit that is linked to the NSA doesn't mean anything," Prof Woodward said.
We should probably consider ANY hardware manufactured in a country with an uber-authoritarian, paranoid government to be suspect.
How closely does Apple scrutinize iPhones coming out of Foxconn, I wonder?
Curious why you single out Apple when Samsung, Nokia, Dell, Sharp, Google, Amazon, Sony, and everyone else have their stuff made by Foxconn too. All of these companies go over their devices thoroughly as they know any security issue could have HUGE negative repercussions for them.
This is a weird thing to me, because at first actually it seemed like it was much ado about nothing, which was actually more suspicious than this highly predictable revelation. However, I still don't know if there's any way to tell who is backdooring these devices, only that it is now clear Huawei can't protect their supply chain any better than anyone else.
If you are honest, it comes down to which governments will you make it easy to spy on you. Telecoms are backdooring/MITM cells anyway, so no advantages there.
What about PC and tablets?
Windows, Android, Apple? The US already has your shit.
Huawei, etc? China does too.
Russia's backward economy doesn't actually make electronics products worth importing anywhere else, but they have decent software skills, hence Kaspersky.
Europe's got a few things...Airbus?, but no real marquee stuff in tech. RIP Nokia, which is now basically an Android subcontractor.
If you live in China, and aren't politically active or ambitious, absolutely get a Huwei and save a 20% up to a hundred bucks vs a Nokia with equivalent specs.
If Russia already has your data, sure, go ahead and run Kaspersky to keep the Chinese out. Might be good for Russian aligned Linux users too.
But here is the real, practical deal:
If you use what 99% of other people use (aka not Gentoo) the US can get your stuff pretty easily.
So it comes down to what companies ALSO get your data. Running office and chrome on your mac book? Apple, MS and Google all have your stuff. Hell even without chrome all your Gmail friends each gave their half of shit to Google anyway.
The US has my stuff. MS has my stuff. But Google doesn't and apple doesn't. Beat I can do. And even Google or Apple will get my phone stuff in a year when WinPhone is dead dead. What am I going to do? Not use a smartphone? Live like an animal on a cave? F that.
The US has been the most trustworthy of the admittedly low bar set by China, Russia and the US. Even with #orangemanbad stuff, the US is only dropping towards the other two. I'd love for some other empire to exist and be better, but right now, the obnoxious bumbling America is still better than the other two bidders.