[ / / / / / / / / / / / / / ] [ dir / baphomet / caco / choroy / christ / dbv / dempart / gfl / leandro ][Options][ watchlist ]

/tech/ - Technology

You can now write text to your AI-generated image at https://aiproto.com It is currently free to use for Proto members.
Email
Comment *
Verification *
File
Select/drop/paste files here
Password (Randomized for file and post deletion; you may also set your own.)
* = required field[▶ Show post options & limits]
Confused? See the FAQ.
Expand all images

[–]

 No.1048410>>1052705 [Watch Thread][Show All Posts]

>Security researchers have discovered a previously unknown feature in the Intel chipsets, which could allow an attacker to intercept data from the computer memory. The feature called Intel Visualization of Internal Signals Architecture (Intel VISA) is said to be a utility that is bundled by the chipmaker for testing on the manufacturing lines. Although Intel doesn't publicly disclose the existence of Intel VISA and is extremely secretive about it, the researchers were able to find several ways to enable the feature on the Intel chipsets and capture the data from the CPU.

>As a per presentation made by the researchers Mark Ermolov and Maxim Goryachy of Positive Technologies at the ongoing Blackhat Asia 2019 conference in Singapore, their exploits of the Intel chipsets don't require any hardware modifications or special equipment. One of the techniques shared by the researchers involved vulnerabilities detailed in Intel-SA-00086 advisory that give access to Intel Management Engine (Intel ME), in turn helping enable VISA. Access to Intel VISA makes the computer's entire data vulnerable and obtainable for the attacker.

https://gadgets.ndtv.com/laptops/news/intel-visa-sa-00086-exploit-researchers-computer-data-access-2014854

https://archive.fo/dMirw

So these are the details of how they read 'encrypted cloud data' in data centers.

 No.1048413

So? Thorough testing of chips allows you to do things such as enjoying Netflix or Fortnite smoothly and flawlessly.


 No.1048418>>1048420 >>1048564 >>1048572

>One of the techniques shared by the researchers involved vulnerabilities detailed in Intel-SA-00086 advisory that give access to Intel Management Engine (Intel ME)

I'm interested. Any chance it could be used to disable ME?


 No.1048420

>>1048418

No, the ME is used to gain access to this and therefore memory.


 No.1048564>>1049261


 No.1048571>>1048583 >>1048659

these are now released almost every week but somehow theres no mass exploiting of intel systems happening


 No.1048572

>>1048418

or could it be used to reverse engineer the proprietary parts so all intel devices could have libreboot and maybe free cpu firmware too


 No.1048583

So can you get root as regular user or what exactly is the implication here?

Is there even an implication or is this merely good news for people trying to reverse engineer intel chips like anon said?

>>1048571

these are now released almost every week but somehow theres no mass exploiting of intel systems happening

There really isn't many people who know about hardware because it's alls secret and really disgustingly ugly designed so those vulnerabilities are probably expensive as fuck.


 No.1048586>>1048587 >>1048659

everyone posting ITT is retarded

this isn't an "exploit". this is a hidden debug mode that has to be enabled using preexisting exploits that are practically impossible to utilize unless very specific conditions are met and even then exploit execution is incredibly time consuming, prone to failure + super easy to notice by a semi-competent administrator


 No.1048587>>1048589 >>1048744 >>1052866

>>1048586

irregardless here are some tips for tightening security:

disable hardware virtualization

disable multithreading

don't use an operating system that allows memory to be wx

make sure your bios firmware is up to date and you have the latest intel microcode updates


 No.1048589

File (hide): d2e892ee1bf8701⋯.jpg (69.38 KB, 598x662, 299:331, maxresdefault.jpg) (h) (u)

>>1048587

>irregardless

You fucking what


 No.1048592

File (hide): b614de2acaf305c⋯.jpg (15.34 MB, 9999x9999, 1:1, intel_collage.jpg) (h) (u)


 No.1048616

KILL THEM ALL

A PHOENIX SHALL RISE FROM THEIR ASHES


 No.1048659>>1048744

>>1048571

>these are now released almost every week but somehow theres no mass exploiting of intel systems happening

>>1048586

>everyone posting ITT is retarded

>this isn't an "exploit".

INTEL ON FULL DAMAGE CONTROL

DO NOT EVER BUY INTEL HARDWARE OR PRODUCT

EVERYTHING FROM INTEL IS TOTAL JEWISH ORWELLIAN BOTNET

INTEL is israeli jewish mossad company that supports (((world government))) and killing of all white people


 No.1048698>>1048702 >>1049016 >>1049020

The faggot mods here don’t like Intel vuln threads.


 No.1048702>>1048705

>>1048698

Maybe they should write Intel a letter and ask them to stop leaving so many vulnerabilities in then.


 No.1048705

>>1048702

>Maybe they should write Intel a letter and ask them to stop leaving so many vulnerabilities in then.

I kek'd. Now >>>backtoreddit


 No.1048744>>1048762

>>1048587

>disable multithreading

You could just say "don't use a computer" at that point.

>>1048659

Sure thing schizo


 No.1048762>>1048764 >>1049145

>>1048744

Ask me how I can tell you’re a kike.


 No.1048764

>>1048762

It takes one to know one.


 No.1049016>>1049258

>>1048698

>The faggot mods here don’t like Intel vuln threads.

they are corrupt and get a lot of dollars from Intel


 No.1049020

>>1048698

You're actually wrong. The mods don't like multiple threads for a single topic. Keep the discussion to that one thread and recreate the thread when it reaches the thread limit.


 No.1049145>>1049178 >>1049225

>>1048762

Because you're a schizo?


 No.1049178

>>1049145

No it's your alien mode of argumentation. You'll never fit in amongst the gentiles.


 No.1049220

Uninstall the unnecessary ISA drivers if you're using jewtel laptops/computers.

Laptops with jewtel core processors 2n'd gen above are likely gonna have the same level of exploits and it's not just your data, but the MINIX backdoor that lets them watch you over the webcam as long as it's connected through the intel gigabit lan + intel mobo + intel/minix processor. Mainly the reason why laptops could only use whitelisted wlan cards that doesn't break or spill the beans of that ecosystem of backdoors. That is ME. There's another which is handles the intel RAID that is likely on modern computer/laptops.

The new shit is the (((NVMe))) and seriosly hope you didn't buy that crap.

Anything intel is mossad hardware that reports livestock human to the ayy overlords.


 No.1049225>>1049250

>>1049145

NOTHING WRONG WITH BEING A SCHIZO. THE SCHIZO'S ARE DESCENDANTS OF JESUS. IT GIVES THEM TELEPATHIC POWER.


 No.1049250

>>1049225

Schizophrenics are glowniggers


 No.1049258

>>1049016

Synagogue of Satan members.


 No.1049261>>1049266 >>1050804

>>1048564

Recommendations.

Instead of hotwiring a prototyping board pull out soldering iron and make it right.

Have the raspberry pi open a reverse shell back to the and talk to a handler on your other machine. Better yet just attach a screen to the pi.

Create a script to do all of this so all you have to do is plug in the chip and run ./unfuckmyshit.sh

It would not be a big deal to write some BASH or Python scripting to handle the entire process. That is a lot of work just to turn of some shit.

Github repo

https://github.com/ptresearch

Blog

https://blog.ptsecurity.com

This looks like it could be fun to fuck around with. Oh seems it's just privilege escalation. That's no fun. This is a lot of fuss over something that you need to have local access to manipulate. Or am I missing something?


 No.1049266>>1049267

>>1049261

Every layer is like peeling an onion. Yes you missed something.


 No.1049267>>1050721

>>1049266

So VISA is vulnerable to RCE?


 No.1050721>>1050804 >>1051521

>>1049267

Maybe not directly but you should watch every Positive Technologies presentation as soon as they are put onto the web, and follow their blog. A couple ruminations later and you'll arrive at the same conclusion I did, which is that ME can be exploited in several ways including with undocumented instructions of which we know now there are quite literally millions.


 No.1050804>>1050808

>>1050721

Is none of this mitigated with coreboot?

>>1049261

Breaking into the houses of their top level engineers and torturing them for information sounds more feasible tbh


 No.1050808

>>1050804

Me_cleaner is included with coreboot and can help with some me attacks. Coreboot can help against uefi attacks. Lots of the recent intel exploits are against the cpu though.


 No.1051521

>>1050721

How do I watch Positive Technology presentations? I don’t see them on their website.


 No.1052705

>>1048410 (OP)

People still using kike products? Ha


 No.1052866

>>1048587

>disable hardware virtualization

Don't virtually all recent hypervisors require h/w virtualization enabled (VT-x and/or VT-d etc.)?




[Return][Go to top][Catalog][Screencap][Nerve Center][Cancer][Update] ( Scroll to new posts) ( Auto) 2
36 replies | 2 images | Page ???
[Post a Reply]
[ / / / / / / / / / / / / / ] [ dir / baphomet / caco / choroy / christ / dbv / dempart / gfl / leandro ][ watchlist ]