you are viewing a single comment's thread
view the rest of the comments
[–] 6 points 2 weeks ago (1 child)

They already have a solution to the Trusting trust attack thanks to DDC and live-bootstrap’s work.

https://guix.gnu.org/en/blog/2023/the-full-source-bootstrap-building-from-source-all-the-way-down/

  • source
  • hideshow 2 child comments
  • [–] 3 points 2 weeks ago (1 child)

    Mmh… but this concept only fully works on Open-Source hardware, doesn't it? Otherwise the microcode or CPU itself could still be an attack vector to infect the bootstrapped compiler?

    (Genuinely curious, I have no clue)

  • source
  • parent
  • hideshow 2 child comments