Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

What the fuck?! I did not sign up to live in some third world shithole where I can't get first-world networking equipment. I do not want some piece of shit closed-source proprietary netgear ameritrash. FUCK! Give me back my god damn chinese routers!

Chinese citizens have more computing freedom than American citizens at this point. What the fuck happened to the land of the free?



I doubt anything will be pulled from the market. This is instead notice to the companies that now is the time for a donation to the administration’s ballroom.


Right now, the way this is currently worded, every single foreign-made consumer router has already been pulled from the market, and has to request permission to be reintroduced. The only consumer routers not currently affected are those that are either already purchased (some good, but won't last forever) or are American-made (overpriced, underpowered dogshit)


From the news release "What does this mean?" section: "This update to the Covered List does not prohibit the import, sale, or use of any existing device models the FCC previously authorized."

So no, this does not pull all existing routers off the market. Anything that already got FCC approval remains approved and new stock may be imported and sold.


> I do not want some piece of shit closed-source proprietary netgear ameritrash.

So much different than the piece of shit closed-source proprietary netgear chinesium.

Consumer routers are shit full stop.


Plenty of Chinese routers offer better performance at lower prices with factory support for OpenWRT, unlike Ameritrash.


Only Glinet. With all the rest is hit and miss and some are with locked bootloaders.


The computing freedom = a plausibly deniable backdoor.

https://nvd.nist.gov/vuln/detail/CVE-2023-1389


Another favorite, https://www.synacktiv.com/publications/cool-vulns-dont-live-...

the router sniffed plaintext http to grab HTTP User agents to put them into a curl bash command line string. Nice RCE from the browser.


I understand the anger but I wouldn't go as far as that last part... the GFW is the ultimate censorship tool. For the record I run tp-link aps


Lmao you're an IT guy, right? Get yourself a Raspberry Pi 5, PCIe adapter and a second hand gigabit Intel NIC. Slap a case on that, put OpenWRT on it and bam! High performance, high quality router built from trustworthy parts running open source operating system. Not the prettiest and simplest solution but at least that way you don't have to depend on Realtek chips and Chinese firmware.


Pi 5 can't come close to handling gigabit wireguard tunnels. I can do an x86 build that will, but still, incredibly aggravating.


You'll probably see better performance with a non-wireguard VPN with the RP5 since it has hardware accelerated AES instructions.


There is an entire WORLD that lives in your computer below the operating system (eg, OpenWRT). For example, in your Raspberry Pi 5, there is a chip called the VideoCore GPU and it contains a big blob of code known only to Raspberry Pi Foundation and, perhaps, Five Eyes. The Chinese processors are like that too!

Even if you have the source and build system to recreate the exact binary blob and can reload it with Jedec or whatever, there is another world below the firmware...called microcode. Some of the microcode comes from the FAB preloaded! Even if you can get the source code for the microcode and somehow read it out and verify it is the same, you guessed it...there is another world below that [1 https://www.researchgate.net/publication/380555600_Trustwort... ] [2 https://dl.acm.org/doi/fullHtml/10.1145/3579856.3582837 ] [3 https://ieeexplore.ieee.org/document/7546493 also https://www.semanticscholar.org/paper/A2%3A-Analog-Malicious... ]


I get your point but once you start looking at tech this way you will come to a conclusion that nothing's safe. With RPi you at least know that millions of units have been deployed in companies where monitoring is so strict and stakes so high nothing fishy would go unnoticed. Also there is a reputation of the manufacturer and people in charge being at stake. With no name Chinese hardware you can't really expect firmware updates and if anything fishy gets discovered by someone they'll just change their brand name from King Dong to Dong Xiang and keep selling.


Why wasn't anyone notified about this being in the works? What bulletins did I fail to notice. WHAT THE HELL IS GOING ON HERE




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: