@AnachronistJohn I wouldnât trust the software on my smart TV, but I donât see an alternative to trusting my router and switches to route packets properly. I can see only trusting point-to-point comms between devices to an extent, but at done point I feel like Iâd be chasing an elusive root of trust. Do those devices need to be running chipsets that I understand? If so, Iâm fucked. Iâm not Bunny Huang.
Understand that Iâm not trying to argue against whatever your threat model is, just say that Iâve considered not trusting the DHCP server and the string parameters it passes in an ostensibly closed system and the engineering team decided that if you got that kind of toehold on the network, you could take the machine because there wasnât any point in putting further effort into securing against that threat.
@ireneista @chaos @AMS @ryanc