Did I misunderstand or didn't someone find a way to neuter and/or disable Intel ME by setting the NSA High Assurance bit?
Why is the latest Intel hardware unsupported in libreboot? (2017)
11–20 of 132 posts
Re: Why is the latest Intel hardware unsupported in libreboot? (2017)
#12Realistically if some party made use of these backdoors regularly someone would probably have noticed the traffic already.
Re: Why is the latest Intel hardware unsupported in libreboot? (2017)
#13Realistically if some party made use of these backdoors regularly someone would probably have noticed the traffic already.
You have smartphones uploading location data and browser history every day for years and it almost goes unnoticed.
Re: Why is the latest Intel hardware unsupported in libreboot? (2017)
#14Don't get me wrong, I definitely support the idea of open firmware and I would gladly adopt libreboot and replace any BIOS firmware on all of my systems. But, not a single system (Intel ME in all of them) is supported. I could donate some of my systems, and money, but how would that help? 20 years of efforts (including the efforts of coreboot) don't seem to have generated any adoption rate. Or is there some info I didn't get?
Re: Why is the latest Intel hardware unsupported in libreboot? (2017)
#15Re: Why is the latest Intel hardware unsupported in libreboot? (2017)
#16Realistically if some party made use of these backdoors regularly someone would probably have noticed the traffic already.
You have smartphones uploading location data and browser history every day for years and it almost goes unnoticed.
Re: Why is the latest Intel hardware unsupported in libreboot? (2017)
#17AMD's in a similar boat, if you scroll a bit further down too :(
I hope that in the future some manufacturer(s) start making fully open source verifiably secure RISC-V (or ARM) processors, and that we have a migration over to that.
Re: Why is the latest Intel hardware unsupported in libreboot? (2017)
#18Libreboot is making a strong case for using open firmware in systems, yet it supports only a limited set of mostly outdated system boards. Isn't that a sign that it failed? After so many years? Don't get me wrong, I definitely support the idea of open firmware and I would gladly adopt libreboot and replace any BIOS firmware on all of my systems. But, not a single system (Intel ME in all of them) is supported. I could…
It's not for lack of trying; the lack of adoption is because Intel is actively hostile to efforts like these and they hold all the cards.
Re: Why is the latest Intel hardware unsupported in libreboot? (2017)
#19Libreboot is making a strong case for using open firmware in systems, yet it supports only a limited set of mostly outdated system boards. Isn't that a sign that it failed? After so many years? Don't get me wrong, I definitely support the idea of open firmware and I would gladly adopt libreboot and replace any BIOS firmware on all of my systems. But, not a single system (Intel ME in all of them) is supported. I could…
Re: Why is the latest Intel hardware unsupported in libreboot? (2017)
#20This is why I have an Apple Powermac G5 or two stored in my basement. These run entirely free of that backdoor.
What's the threat model and what would be your signal to go start using them and abandoning your presumably more modern system, and how would you keep the software on them secure? Will you use Gentoo, given that Debian has dropped PPC?