LWN: Comments on "Over The Air: Exploiting Broadcom’s Wi-Fi Stack (Project Zero)" https://lwn.net/Articles/718886/ This is a special feed containing comments posted to the individual LWN article titled "Over The Air: Exploiting Broadcom’s Wi-Fi Stack (Project Zero)". en-us Wed, 08 Oct 2025 19:31:20 +0000 Wed, 08 Oct 2025 19:31:20 +0000 https://www.rssboard.org/rss-specification lwn@lwn.net Over The Air: Exploiting Broadcom’s Wi-Fi Stack (Project Zero) https://lwn.net/Articles/719018/ https://lwn.net/Articles/719018/ tao <div class="FormattedComment"> That's a false dichotomy.<br> <p> The firmware that's being uploaded at boot is built from source code by someone (as is, for that matter, the firmware in ROM). The relevant dichotomy is:<br> <p> "Is the source code for the blob available (and modifiable by the user)" vs "Is the source code for the blob not available (or available, but not modifiable by the user, by means of DRM that prevents loading unsigned blobs or lack of the toolchain to build the blob)"<br> </div> Wed, 05 Apr 2017 15:47:22 +0000 Over The Air: Exploiting Broadcom’s Wi-Fi Stack (Project Zero) https://lwn.net/Articles/718949/ https://lwn.net/Articles/718949/ foom <div class="FormattedComment"> Wait, I got this.<br> <p> It's "Thank God the code is uploaded at boot from a file on my filesystem, instead of being [fully] in rom, so you don't need to worry about attacks persisting after power off, plus it's easy to patch!"<br> <p> That was it, right?<br> </div> Wed, 05 Apr 2017 10:51:33 +0000 Over The Air: Exploiting Broadcom’s Wi-Fi Stack (Project Zero) https://lwn.net/Articles/718916/ https://lwn.net/Articles/718916/ ms <div class="FormattedComment"> Superb work and writeup.<br> </div> Tue, 04 Apr 2017 21:12:30 +0000 Over The Air: Exploiting Broadcom’s Wi-Fi Stack (Project Zero) https://lwn.net/Articles/718906/ https://lwn.net/Articles/718906/ rriggs <div class="FormattedComment"> 4. Binary blobs are beer for computers. The more binary blobs a computer consumes, the more promiscuous it becomes.<br> </div> Tue, 04 Apr 2017 19:41:43 +0000 Over The Air: Exploiting Broadcom’s Wi-Fi Stack (Project Zero) https://lwn.net/Articles/718896/ https://lwn.net/Articles/718896/ flussence <div class="FormattedComment"> Oh, oh, I know these!<br> <p> 0. If two computer systems are in equilibrium with a third, it's probably because they don't have GPUs or wifi.<br> 1. Proprietary software can neither be reviewed nor patched, only executed.<br> 2. The entropy of an isolated system with blobs will increase over time, until it ceases to work.<br> 3. As profit margins approach absolute zero, the QA testing done on firmware approaches a minimum.<br> </div> Tue, 04 Apr 2017 19:00:01 +0000 Over The Air: Exploiting Broadcom’s Wi-Fi Stack (Project Zero) https://lwn.net/Articles/718893/ https://lwn.net/Articles/718893/ jhoblitt <div class="FormattedComment"> The first rule of binary blob club is...<br> </div> Tue, 04 Apr 2017 17:53:07 +0000