Sujet : Re: Security? What "Security"?
De : not (at) *nospam* telling.you.invalid (Computer Nerd Kev)
Groupes : comp.miscDate : 13. Oct 2024, 20:51:04
Autres entêtes
Organisation : Ausics - https://newsgroups.ausics.net
Message-ID : <670c24a7@news.ausics.net>
References : 1 2 3 4
User-Agent : tin/2.0.1-20111224 ("Achenvoir") (UNIX) (Linux/2.4.31 (i586))
Scott Dorsey <
kludge@panix.com> wrote:
Farley Flud <ff@linux.rocks> wrote:
The Intel ME can be disabled in the motherboard BIOS. Whenever
I build a new machine it is one of the first things that I
disable.
>
No. The interface that makes the ME visible to the operating system
can be disabled, but the ME is still down there doing whatever
undocumented things it does. If it wasn't, the processor would never
be able to load the microcode in the first place.
Indeed. Wikipedia summarises potentially more effective ways of
disabling some IME functions using me_cleaner. Installation is
risky though so I haven't tried it myself.
https://en.wikipedia.org/wiki/Intel_Management_Engine#Disabling_the_ME-- __ __#_ < |\| |< _#