Who mods statements like this up? You're very arrogantly asserting an untruth.
- Hardware is compiled (VHDL, Verilog ).
- A compiler compiler that is malicious can exist and be undetectable. This is a known fact. https://www.usenix.org/confere...
- Anyone swearing up and down they aren't doing shady shit -- when everyone is aware of the large and damning set of evidence that corroborates them doing shady shit -- is a huge fucking red flag. They think they can get away with security intrusions, by pretending to give full audit access, when that audit access *would not* prove definitively of is that was a thing (absence of proof is not proof of absence).
- How many companies do you know, audit their supply-chain of information technology? Defective/bogus parts are a thing (people want to sell their shit even if their shit doesn't work), and malicious actors specifically working to trojan hardware and softer -- are a thing.
How gullible/naive/unaware of the logistical details of this situation are you?
Your thought process is wishy-washy nonsense. Just because you don't know about something, does not mean that that thing does not exist. Go learn about information security before you start talking nonsense. An absence of you being unable to imagine how this can be an attack, indicates you don't understand the domain you're talking about confidently.
See also: https://stackoverflow.com/a/64...
This is called a supply-chain attack. They are using dropper-trojans or other means to attack the supply-chain. This is also a thing in other industries ( https://www.bloomberg.com/news... ).
I recommend you study the philosophy of science; that'll help you learn to demonstrate rational empiricism and relevant thoughts. Right now you just seem like a troll -- because why would you, from a position of ignorance, assert untruths?