[Cryptography] Intel Management Engine pwnd (was: How to find hidden/undocumented instructions

Tom Mitchell mitch at niftyegg.com
Thu Nov 23 02:59:31 EST 2017


On Wed, Nov 22, 2017 at 6:37 PM, Jerry Leichter <leichter at lrw.com> wrote:

> > There is no logical reason why most of the Intel management engine is
> implemented in software.
> > It should be a coprocessor with most components implemented in hardware.
> Why would you expect a hardware implementation to be more secure?


The missing bit is a physical off or disconnect switch in the design for
this subsystem.
There are updates..
The list of processors is quite long.
https://www.intel.com/content/www/us/en/support/articles/000025619/software.html

News at 11.



-- 
  T o m    M i t c h e l l
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://www.metzdowd.com/pipermail/cryptography/attachments/20171122/c76de6aa/attachment.html>


More information about the cryptography mailing list