←back to thread

341 points hlandau | 2 comments | | HN request time: 0.416s | source
Show context
liquidk ◴[] No.37962482[source]
The provider has access to the host, they can just inspect the job from the outside and you won’t be able to tell
replies(3): >>37962632 #>>37962862 #>>37963439 #
Jenda_ ◴[] No.37963439[source]
The Hetzner one is a physical server. You would need to stage a "power outage" and backdoor it, which is probably not that easy - e.g. planting a kernel module which survives kernel upgrades and is pretty advanced at hiding itself (the article talks about analyzing raw memory dump).
replies(2): >>37964106 #>>37970329 #
1. Avamander ◴[] No.37970329[source]
It only takes access to a DMA-enabled bus (e.g. PCIe) though, to siphon memory contents.
replies(1): >>37974385 #
2. immibis ◴[] No.37974385[source]
And I bet PCIe is a whole lot more hotpluggable than you're officially told.