Why is the latest Intel hardware unsupported in libreboot? (2017)
1–10 of 132 posts
Re: Why is the latest Intel hardware unsupported in libreboot? (2017)
#2AMD's in a similar boat, if you scroll a bit further down too :(
Re: Why is the latest Intel hardware unsupported in libreboot? (2017)
#3By now, it's probably reasonable to assume that NSA, GCHQ, the FSB, the Third Department, and Mossad can all use that backdoor.
Re: Why is the latest Intel hardware unsupported in libreboot? (2017)
#4Since Intel/AMD also designs the processor they can also put in backdoors beyond ME, microcode updates, etc. If you don’t trust proprietary blobs, I respect that. But you can’t trust proprietary silicon either.
Re: Why is the latest Intel hardware unsupported in libreboot? (2017)
#5> Traffic is encrypted using SSL/TLS libraries, but recall that all of the major SSL/TLS implementations have had highly publicized vulnerabilities.
I'm not sure this is a valid criticism...wouldn't we be more worried if they were using anything else instead?
Re: Why is the latest Intel hardware unsupported in libreboot? (2017)
#6Did I misunderstand or didn't someone find a way to neuter and/or disable Intel ME by setting the NSA High Assurance bit?
Re: Why is the latest Intel hardware unsupported in libreboot? (2017)
#7Realistically if some party made use of these backdoors regularly someone would probably have noticed the traffic already.
Re: Why is the latest Intel hardware unsupported in libreboot? (2017)
#8> Traffic is encrypted using SSL/TLS libraries, but recall that all of the major SSL/TLS implementations have had highly publicized vulnerabilities. I'm not sure this is a valid criticism...wouldn't we be more worried if they were using anything else instead?
Not if the "anything else" was for this part of the system to not exist and/or not have any network access.
Re: Why is the latest Intel hardware unsupported in libreboot? (2017)
#9By now, it's probably reasonable to assume that NSA, GCHQ, the FSB, the Third Department, and Mossad can all use that backdoor.
It's probably reasonable to assume that half the attendees at DEFCON can use that backdoor. There are several known vulnerabilities listed in the linked Wikipedia article which have to be patched with a firmware update that some OEMs didn't bother to provide and most users didn't bother to install.
Re: Why is the latest Intel hardware unsupported in libreboot? (2017)
#10Asking someone who took their last (undergraduate) architecture course more than a decade ago: Is it possible to design a motherboard that will shield the user against Intel ME / AMD PSP-induced shadiness? Would it be possible to do this without performance impact?