[Cryptography] Intel Management Engine pwnd

Ryan Carboni ryacko at gmail.com
Wed Nov 29 20:39:02 EST 2017


>
> Well, at the very least it has to maintain the time...
>
>
Don't ludicrous, the US government funds orbital satellites with atomic
clocks on them. (bafflingly, the iphone compass app requires a barometer to
determine altitude when GPS is three-dimensional)
Probably better off with the clock being reset when unplugged, it has
horrible accuracy anyway, worse than quartz wristwatches.

If one is worried about spoofed ntp packets after the time is reset, to
allow revoked certificates being used, then one is facing a far more
elaborate attack then typically practiced.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://www.metzdowd.com/pipermail/cryptography/attachments/20171129/52ffb754/attachment.html>


More information about the cryptography mailing list