Live data from Hacker News

After CIA leak, Intel Security releases detection tool for EFI rootkits

pcworld.com

31–40 of 61 posts

Re: After CIA leak, Intel Security releases detection tool for EFI rootkits

#31
post #26
post #22

Earlier quoted context omitted.

.

What's your point? Is it that exploit developers are not compensated financially for their work? Exploit developers should find a better business model than their current one. This guy was able to take freely available exploit knowledge and monetize it. If the parties responsible for creating the exploit feel they have some sort of IP claim against them, they should sue. If exploit developers wish to release exploit…

You missed the point. It is all about giving credit to those who do the work and make discoveries. It is in poor taste to exploit people in the case of taking their work and not giving any credit to those that made their business model possible.

Re: After CIA leak, Intel Security releases detection tool for EFI rootkits

#32
post #10
post #7

Earlier quoted context omitted.

Of all the attacks a nation state could do, surely finding a few talented people to get PhDs in the appropriate fields and go to work at Intel and collect a paycheck along with a nice stipend from the nation state is likely among the easiest.

Probably easier to find an existing employee with financial problems and offer a duffel bag of cash to plug in a USB stick for 30 seconds.

This is like the opposite or corollary of the "$5 rubber hose" cryptography cracking device.

Re: After CIA leak, Intel Security releases detection tool for EFI rootkits

#33
post #10
post #7

Earlier quoted context omitted.

Of all the attacks a nation state could do, surely finding a few talented people to get PhDs in the appropriate fields and go to work at Intel and collect a paycheck along with a nice stipend from the nation state is likely among the easiest.

Probably easier to find an existing employee with financial problems and offer a duffel bag of cash to plug in a USB stick for 30 seconds.

Better still, infect his USB stick without him knowing.

Re: After CIA leak, Intel Security releases detection tool for EFI rootkits

#36
post #26
post #22

Earlier quoted context omitted.

.

What's your point? Is it that exploit developers are not compensated financially for their work? Exploit developers should find a better business model than their current one. This guy was able to take freely available exploit knowledge and monetize it. If the parties responsible for creating the exploit feel they have some sort of IP claim against them, they should sue. If exploit developers wish to release exploit…

[deleted]

Re: After CIA leak, Intel Security releases detection tool for EFI rootkits

#38
I hope they also release System Management Mode (aka ring -2) rootkit detection tools.

https://en.wikipedia.org/wiki/System_Management_Mode#Problem...

That in combination with the Management Engine are ways in which people have been disowned of their own machines.

Re: After CIA leak, Intel Security releases detection tool for EFI rootkits

#40

What does it mean to get this? https://s.ave.zone/066.png [CHIPSEC] Modules failed 1: [-] FAILED: chipsec.modules.common.uefi.s3bootscript

:(

-- clarification

Technically all it means, if the error is as advertised, is that the uefi bootscript failed to match. Now, it could be as simple as that UEFI was customized by a vendor. Or it could be something less innocent.

Post reply on HN