In a Maemo phone, where the whole telephony stack is open source (including the modem plug in), and the hardware is capable of using the bands of any provider, wouldn't it be straightforward to hack the device to use any provider? What would be the roadblocks to stop or slow hackers from making a Maemo device use AT&T / Rogers HSPA, if not configured out of the box?