/
Navigation
Chronicles
Browse all articles
Explore
Semantic exploration
Research
Entity momentum
Nexus
Correlations & relationships
Story Arc
Topic evolution
Drift Map
Semantic trajectory animation
Posts
Analysis & commentary
Pulse API
Tech news intelligence API
Browse
Entities
Companies, people, products, technologies
Domains
Browse by publication source
Handles
Browse by social media handle
Detection
Concept Search
Semantic similarity search
High Impact Stories
Top coverage by position
Sentiment Analysis
Positive/negative coverage
Anomaly Detection
Unusual coverage patterns
Analysis
Rivalry Report
Compare two entities head-to-head
Semantic Pivots
Narrative discontinuities
Crisis Response
Event recovery patterns
Connected
Search: /
Command: ⌘K
Embeddings: large
TEXXR

Chronicles

The story behind the story

days · browse · Enter similar · o open

Google, non-profit lowRISC, and others debut OpenTitan, a project for open sourced “root of trust” chip designs, aiming for more secure, auditable datacenters

Patrick Howell O'Neill / MIT Technology Review :

MIT Technology Review Patrick Howell O'Neill

Context & Ripple Effects

OpenTitan is the public-facing endpoint of a strategy Google has been building since its cloud security paper laid out custom chips on servers and its 2017 announcement of Titan specs for tamper-scanning cloud hardware. Having already opened the Titan M firmware in Pixel phones, Google is now handing the root-of-trust design itself to non-profit lowRISC so datacenter operators can audit the silicon rather than trust a vendor's black box.

First-order effects

  • Datacenter operators gain a freely licensable, inspectable root-of-trust design, letting them verify server boot integrity without depending on a single chip vendor's closed implementation.

Second-order effects

  • Vendors selling proprietary security silicon to hyperscale buyers now compete against a free, community-audited alternative — and the model proved durable enough that the Open Compute Project later standardized on the same idea with its Caliptra root-of-trust specification.

Third-order effects

  • If open root-of-trust designs become table stakes, hardware trust shifts from a vendor marketing claim to an auditable supply-chain requirement — a direction reinforced by Google's subsequent cooperative R&D agreement with NIST on open-source semiconductor designs.

The trend: Datacenter hardware trust is migrating from proprietary vendor chips toward open-source, community-audited root-of-trust designs, with hyperscalers seeding the standards their own fleets will adopt.

Discussion

  • @kennwhite Kenn White on x
    “For Google's engineers, MINIX was an entire attack surface they didn't know about, understand, or defend. MINIX is one of the catalysts that pushed Google to fabricate its own hardware and led to OpenTitan.” https://www.technologyreview.com/ ... nice write up by @HowellONeill
  • @howelloneill Patrick Howell O'Neill on x
    Google is open sourcing their Titan chip, a hardware root of trust designed to secure their machines when they're most vulnerable https://www.technologyreview.com/ ...
  • @dcuthbert Daniel Cuthbert on x
    I've made it clear how much I really respect what @GCPcloud have done with the Titan chip, so by pushing this open initiative, this benefits so many. I'm excited as hell, solid move Google https://github.com/... https://twitter.com/...
  • @jckichen @jckichen on x
    This is a great way to think about how a state-nexus threat actor approaches targeting. Sometimes its about what vuln can be exploited, but its more often about finding strategic solutions: “....an entire attack surface they didn't know about, understand, or defend.” https://twit…
  • @pinboard @pinboard on x
    Interesting how the technologies we dreaded in 2000 would mean the death of open computing are now being deployed and lauded as the bedrock software for servers that (in Google's words) “run the planet” https://www.technologyreview.com/ ...