> The only person tackling the verifiable hardware side of things seems to be Bunnie Huang with his work on the Precursor
Bunnie's work is inspiring, but he is not alone.
As far as verifiable hardware goes, I would argue that Tillitis TKey is more open source than the Precursor. However, they are very different products, and Precursor is a lot more complex and capable. The only reason TKey is more open than Precursor is because TKey is able to use a completely open source FPGA flow, whereas Precursor cannot.
If you're going to be militant and absolutist about things, that seems like the best place to start
And then probably updating your software incredibly slowly at a rate that can actually be reviewed
Software churn is so incredibly high that my impression is that only some core encryption algo really get scrutinized