Researchers Run Unsigned Code on Intel ME By Exploiting USB Ports

'A pair of security researchers in Russia are claiming to have compromised the Intel Management Engine just using one of the computer's USB ports. The researchers gained access to a fully functional JTAG connection to Intel CSME via USB DCI. The claim is different from previous USB DCI JTAG examples from earlier this year. Full JTAG access to the ME would allow making permanent hidden changes to the machine. "Getting into and hijacking the Management Engine means you can take full control of a box," reports the Register, "underneath and out of sight of whatever OS, hypervisor or antivirus is installed." They add that "This powerful God-mode technology is barely documented," while The Next Web points out that USB ports are "a common attack vector."' -- source: https://it.slashdot.org/story/17/11/11/237236 Cheers, Peter -- Peter Reutemann Dept. of Computer Science University of Waikato, NZ +64 (7) 858-5174 http://www.cms.waikato.ac.nz/~fracpete/ http://www.data-mining.co.nz/

On Sun, 12 Nov 2017 12:47:58 +1300, Peter Reutemann wrote:
'A pair of security researchers in Russia are claiming to have compromised the Intel Management Engine just using one of the computer's USB ports.'
You’ll be pleased to know, Linux laptop maker System76 has announced it will be disabling the Intel Management Engine in its products <http://www.theregister.co.uk/2017/12/01/system76_bans_bugridden_intel_management_engine/>.

'A pair of security researchers in Russia are claiming to have compromised the Intel Management Engine just using one of the computer's USB ports.'
You’ll be pleased to know, Linux laptop maker System76 has announced it will be disabling the Intel Management Engine in its products <http://www.theregister.co.uk/2017/12/01/system76_bans_bugridden_intel_management_engine/>.
Dell Begins Offering Laptops With Intel's 'Management Engine' Disabled : https://hardware.slashdot.org/story/17/12/03/2113220/dell-begins-offering-la... Cheers, Peter -- Peter Reutemann Dept. of Computer Science University of Waikato, NZ +64 (7) 858-5174 http://www.cms.waikato.ac.nz/~fracpete/ http://www.data-mining.co.nz/

On Mon, 4 Dec 2017 13:33:09 +1300, Peter Reutemann wrote:
Dell Begins Offering Laptops With Intel's 'Management Engine' Disabled : https://hardware.slashdot.org/story/17/12/03/2113220/dell-begins-offering-la...
So it seems like there is some actual market demand for this sort of thing. Which is heartening, because normally you hear that ordinary people don’t know and don’t care.
participants (2)
-
Lawrence D'Oliveiro
-
Peter Reutemann