Sources: Chinese spies inserted tiny chips onto products from US-based motherboard giant Supermicro to infiltrate almost 30 US companies like Amazon and Apple
In 2015, Amazon.com Inc. began quietly evaluating a startup called Elemental Technologies, a potential acquisition to help …
Context & Ripple Effects
The Bloomberg report lands at the center of a supply-chain security arc the desk has tracked since 2015, when Amazon began evaluating Elemental Technologies and its Supermicro-built servers came under scrutiny. The claim — tiny implants on motherboards reaching nearly 30 US customers including Amazon and Apple — turns server procurement from a price decision into a national-security question.
Follow-on coverage kept the story alive rather than letting it fade: days later, security expert Yossi Appleboum supplied documents allegedly showing hacked hardware shipped to a major US telco, sending Supermicro stock down more than 20%, and years later investigators were still describing tampered firmware and backdoor chips in Supermicro servers as late as 2018.
First-order effects
- Amazon, Apple, and the other ~30 named customers face immediate audits of installed Supermicro hardware, since a board-level implant defeats network-side defenses.
- Supermicro absorbs the reputational shock directly — its shares fell over 20% within days once Appleboum's telco documents surfaced alleging hacked shipments.
Second-order effects
- Hyperscalers and large enterprises force component-level inspection and provenance requirements onto all server vendors, raising costs across the x86 supply chain and advantaging suppliers who can document clean manufacturing paths.
- Rival server makers gain a wedge against Supermicro's price-led position, while Chinese contract manufacturers face de-risking pressure from Western OEMs even where no tampering is alleged.
Third-order effects
- If the pattern holds, hardware trust shifts from vendor attestation to state-verified provenance — a trajectory visible when the US itself began secretly embedding location trackers in AI chip shipments including Dell and Super Micro servers to catch diversions to China.
- The 2021 findings that Supermicro firmware carried backdoor code as late as 2018, followed by the DOJ's 2024 accounting probe, point toward an industry structure where board-level suppliers are treated as critical infrastructure subject to continuous investigation rather than commodity vendors.
The trend: Server hardware is moving from a trust-based global supply chain toward verified-provenance procurement, as states both fear implants in foreign-built boards and conduct their own covert tracking of chip shipments.