trotsky suggested i send this baby out, so here it is. buy some cut-rate USB device fer yer PC, get infectified: http://www.sfgate.com/cgi-bin/article.cgi?file=/c/a/2008/01/26/MNE7UHOOQ.DTL&type=tech
i think there's still a lot of denial out there about just how sketchy it can be to take software/firmware development offshore, especially if the coding houses are based in countries known for eCrime and such shenanigans, and triply especially if the work's being done for some inexpensive computer widget.
...and it can be _very_ tempting to put something/anything onto a consumer product. sometimes for notoriety, but sometimes for money. if the cat's away...
i don't see this getting 'better', either. there's so much fruitful hacking terrain emerging, all of it exploit-worthy...