Posted by elashri 1 day ago
But I can't find any information on their Web site about who runs the JetKVM company, not even a partial name or handle of anyone, nor even what country they are in. Which seems odd for how much this product needs to be trusted.
Searching elsewhere, other than the company Web site... Crunchbase for JetKVM shows 2 people, who it says are based in Berlin, and who also share a principal company, BuildJet, which Crunchbase says is based in Estonia. The product reportedly ships from Shenzhen. BuildJet apparently is a YC company, but BuildJet's Web site has very similar lack of info identifying anyone or their location, again despite the high level of trust required for this product.
Are corporate customers who are putting these products into positions of serious trust -- into their CI, and remote access to inside their infrastructure -- doing any kind of vetting? When the official Web sites have zero information about who this is, are the customers getting the information some other way, before purchasing and deploying?
If these people are still running the companies, why aren't they or anyone else mentioned on the company Web sites? That would be helpful first step for trust for corporate use. So its absence is odd.
Had a show HN last week that seemed to go under the radar: https://news.ycombinator.com/item?id=45671087
We launched corporate hierarchy research and working on UBO now. From the corporate hierarchy standpoint, it looks like the Delaware entity fully owns the Estonian entity. Auto generated mermaid diagram from the deep research:
graph TD
e1[BuildJet, Inc.]-->|100%, 2022-12-16|e2[Buildjet OÜ]In this case, what really gets to me is the basic template website they're using; with image carousel but only one image... and the fact that they appeared to have paid influencers on youtube to shill their product.
It feels rushed, and not in a good way.
On the research, you're absolutely right. It fits that sweet spot where it's just easy / boring / tedious enough to automate with the current generation of LLMs.
I only occasionally research companies, and it's from an engineering&product perspective, aside from corporate ownership compliance. (For example, I was asked to vet a little-known company as a prospective partner, for building our cloud infrastructure atop theirs. One of the first rapid low-cost, high-value things I could do, besides looking at their docs and trying their demos, was to skim through the history of business news about them.)
We realized the underlying business graph was the bottleneck though, so that's been our focus for some time. With that in place, we're now coming full circle on the risk research standpoint.
On your comment about confidence / liability, we're actually having conversations around that now and getting feedback. First step is exposing all the research and evidence directly to build trust, which is what we're doing now for the new corporate hierarchy system.
## Summary IKEA US RETAIL LLC is a limited liability company. It is wholly owned by IKEA Holding U.S., Inc., and ultimately controlled by Stichting INGKA Foundation, a Dutch foundation that owns Ingka Group.
## Graph
graph TD
e2[IKEA Property, Inc.]-->e1[IKEA US RETAIL LLC]
e3[IKEA Holding U.S., Inc.]-->e1[IKEA US RETAIL LLC]
e4[Ingka Holding B.V.]-->e3[IKEA Holding U.S., Inc.]
e4[Ingka Holding B.V.]-->e4[Ingka Holding B.V.]
e5[Stichting INGKA Foundation]-->|100%, 1982|e4[Ingka Holding B.V.]
This is the permalink to the deep research result: https://savvyiq.ai/playground/entity-hierarchy/siq_31ro4EDce...Here's the live mermaid editor version for the Ikea example: https://mermaid.live/edit#pako:eNqNkV9PwjAUxb9KcxPfRrO17E_3Y...
Personally I'd never use these on an interned facing network. But they can still be handy for local only.
https://m.youtube.com/watch?v=yHhdTRVvDFU&pp=0gcJCQYKAYcqIYz...
Homelabbers tend to like rackmount. (I've owned multiple servers with such dedicated remote management/access hardware built in.)
JetKVM seems designed to be more a shadow IT at individual desks solution, for use at companies that don't prohibit and actively police that.
https://web.archive.org/web/20200312000527/http://www.cfcl.c...
>We get occasional inquiries about our name. In case you are wondering, it is a pun on "Can't afford a computer laboratory". (We have plenty of computers, to be sure, but the ideal computer laboratory will always be beyond our reach. :-)
>Inspiration for the name was drawn from Walker A. Tompkins, a family friend and prolific writer (of adventures, history, and westerns). Mr. Tompkins used the name "Canta Forda Rancho" for his home in Santa Barbara, CA.
The PiKVM runs wireguard so it's reasonably secure. I assume JetKVM can do the same.
Putting a BMC or KVM on the Internet is hilariously unwise.
No need worry about dodgy remote desktop software — the attackers will be able to back door the firmware!
(Yes, iLO verifies firmware signatures… but yes they’ve had horrific vulnerabilities, worse than nightmares).
> targeting hobbyists and small outfits
Sounds like a great botnet!I'm joking a bit but these are exactly the entities that have fewer capabilities to detect malicious behavior.
Assuming JetKVM is operating in full good faith that doesn't mean they themselves aren't going to be the target. You compromise them and you compromise all their customers. That's true regardless of the company size, but is also the reason for transparency
> Founder Team
> Our founders and team work remotely, scattered across the world, including Germany, China, and New Zealand. We gathered experience from the field of design to software engineering & hardware development. We are the right blend of people, sharing expertise in our team. We're server enthusiasts and thriving to create products that also, literally, work for us. Co-Founders of JetKVM - Adam Shiervani(left), Lian Duan(right)
> Lastly, we are not the only ones, who are dedicated and working full-time on this project. A number of contractors, specializing in various fields are helping us every day, to move forward and unfold the potential of our ideas.
[0] https://www.kickstarter.com/projects/jetkvm/jetkvm/descripti...
> Estonia
Dunno if this is still the case now but Coinbase used to have an IBAN in Estonia (or maybe Latvia, can't recall). The three baltic states became quite the EU tech hub lately.
> The product reportedly ships from Shenzhen
This is not unusual for low-count (<10000) orders and "cut the middleman" when you can't recoup the logistics cost of having a local stock.
Most products come out of Shenzen (or another) anyway, "shipped from" is quite a lousy indicator of anything.
I would appreciate a bit more transparency regarding some provenance bits but hey it's a niche Kickstarter still, not a full-blown scaled-up enterprise.
They've all made doing business remarkably easy - you can get a digital ID and open a bank account without ever being present in the country, and their digital offerings are based on solid crypto and not just centralization.
An incredible example of what modernizing government infrastructure and regulation can do. It's a shame that the cryptobros currently in charge of the US have basically nuked Central Bank Digital Currencies (CBDCs) so that they can continue to grift without supervision.
Buildjet (the parent company) looks to be a pretty small company with currently modest revenue[1]. I agree that the absence of people on both webpages is sort of odd. I think it make more sense for their original service (CI workers) than it does for a hardware product.
https://ariregister.rik.ee/eng/company/16075023/Buildjet-O%C...
Would have to dump the flash with proper tooling, and load up a clean OS on a blank chip to even begin checking for issues. Mostly, these gadgets are purposely built like garbage for a number of reasons.
If I needed a DIY KVM install for a home-theater, I'd just setup a https://pikvm.org/ install. =)
That NanoKVM is RISC-V, the JetKVM is ARM Cortex-A7. Unlikely to be a rebrand.
That said the UI looks somewhat similar so Sipeed might have aped the JetKVM software part (which is FOSS)
The JetKVM uses RockChip RV1106G3. =3
https://jetkvm.com/docs/advanced-usage/developing#developer-...
And the serial console is available over USB UART (SBU)
If it's attempting to be a covert op it's doing either a terrible job or a very advanced one.
Given that very distinctive "JetKVM" shape, I am now 99% sure I've seen this gadget someplace last year, If I recall the Mandarin Chinese name (difficult for me), I will post the hardware URI.
One may be surprised how much hardware includes unsigned firmware OTA updates. And someone will need to audit the stack to check if it has that common problem, and predict if it also has SoM specific Linux kernel requirements.
The Raspberry Pi foundation isn't just hardware, but comes with a proven 10 year OS lifecycle. =3
I'd assume it runs off the 5v standby power when the primary ATX supply is sleeping. =3
Small recycled PCs can certainly work too, and reminds me of the https://guacamole.apache.org/ project. =3
In my case, I found it is not compatible with all HDMI sources but others just have unknown "Loading video stream..." issues.
On the other hand there are people who say "I ordered three, two work and one doesn't" which seems like pretty good evidence there can be real issues with the hardware.
Security is not top priority very obviously, but for a quick kvm on a system without bmc, it’s fine. Picks up DHCP quickly and responsive web UI.
Given that these things have bare metal access, keeping them off of the public internet seems wise no matter what though.
Untrusted devices can sit on a separate VLAN or get WAN blocked, you can still reach them internally, and from any other device on Tailscale. You just need to expose the subnet via Tailscale subnet routing.
I read that as you were selecting the first record from the people array
kvm here mean keyboard video and mouse, not the linux kernel-based virtual machine kvm
this device apparently is used to connect to machines remotely over IP
Letting an LLM loose on a real system without containing it in a sandbox sounds about as predictably disastrous as letting a glorified chess program run all ENCOM operations…
E.g. you'd use JetKVM-like devices to re-install your OS via emulated drives, remotely control power (including hard reset, not just WoL and software shutdown), change BIOS settings, or troubleshoot a crashing box - all without relying on any specific software/capabilities/behavior of the given box. Meanwhile you'd use remote desktop software when you just want the desktop to present itself remotely.
I do VoIP phone systems for a living and this is why I deploy Supermicro mini-ITX servers, so even if something goes totally sideways as long as the client's IT is competent enough to get me remoted in to their voice network in some way I can troubleshoot it fully and in many cases fix it without leaving my desk possibly half way across the country. If it's an actual hardware problem and I can't fix it remotely I still then know for sure what's wrong and whoever's going on site can be properly equipped for the actual problem rather than having to bring everything.
KVM can also be nicer than RDP for certain multi-box workstation setups that need high bandwidth and low latency.
JetKVM – Control any computer remotely - https://news.ycombinator.com/item?id=42986909 - Feb 2025 (1 comment)
JetKVM Source - https://news.ycombinator.com/item?id=42553822 - Dec 2024 (1 comment)
JetKVM – Next generation open-source KVM over IP for $69 - https://news.ycombinator.com/item?id=42313894 - Dec 2024 (2 comments)
JetKVM: Tiny IP KVM That's Not an Apple Watch - https://news.ycombinator.com/item?id=41957056 - Oct 2024 (14 comments)
It would be awesome if they made a PoE version.
I wish there was a way of ordering from a non-US source so I didn't get hit. I'm not in the US, so it feels silly that I have to pay the American import tariffs on Chinese goods!
> US Tariff update: There are currently no additional tariffs, but this may change after November 1st. We’ll ship your order promptly to help minimize the risk of tariffs, though we can’t guarantee none will apply.
I am in the USA and the unit I ordered from iKoolCore is being shipped to me from China. I have no idea how much more I might have to pay in tariffs once it arrives to customs, or how I will even go about paying those tariffs.
What does the board look like, why can’t I DIY that version, etc. Are they just trying to make it up with the software (that I also can’t tell what it looks like).
The V4 Mini is a very nice piece of hardware. I paid $300 for one in April from Amazon. I also got PiKVM running on a Pi Zero 2 W and it worked fine but was a bit squirrely. Having the purpose-built device is nice.
You can also use a Pi Zero 2 W as a serial console: it has a USB On-the-Go port perfect for the purpose. But the KVM approach is more generally useful since you can access a consumer BIOS from it.
Why would one pick a TinyPilot over NanoKVM or JetKVM?
I found PiKVM useful as I already had the hardware laying around, so setting one up didn't cost me anything, and its a pretty good experience. If I were to buy new though, not sure I'd find it worth the cost for my use case.
Overall, I'd recommend them. :)
Thereby, plugging in just a single USB cable would deliver the power needed, keyboard, video and mouse. And bonus for an emulated USB-Stick/DVD drive.
What I don't know if these USB video cards are initialized during early boot and usable during the UEFI/BIOS phase. Is that why they grab the HDMI?
0: https://www.lenovo.com/us/en/p/accessories-and-software/thin...
I got a cheap Tang Mega 238k but I never managed to even get the PCI examples working (and couldn't even adjust BAR settings)
Example: https://geekworm.com/collections/pikvm (but I think this still requires separate power)
To do this, wouldn’t you effectively need to make a graphics card (VGA would work) where a separate chip could read the screen buffer? And somehow get this card to display preferentially over the on-board video card?
I’m sure the all in one card version exists, but honestly a cabled version seems more robust (w/o vendor support that is).
If you do basic VGA (and UEFI), that'd be plenty for most. If it had a local output it'd be great for systems without video on the cpu (am4 non-apus, but also others)
I think there just aren't as many options for DisplayPort capture chips as for HDMI/DVI capture.
0: https://anyware.hp.com/web-help/pcoip_remote_workstation_car...
(N.b. unfortunately the ATX board cannot be ordered independently, so be sure to order the "nanokvm-full" package)