ShadowOfHarbringer (OP)
Legendary
Offline
Activity: 1470
Merit: 1006
Bringing Legendary Har® to you since 1952
|
|
January 06, 2015, 11:09:09 AM Last edit: January 06, 2015, 01:03:55 PM by ShadowOfHarbringer |
|
This is probably one of these "Elephant in the room" topics. Everybody knows it, but nobody talks about it. Most of new Intel chipsets have a deliberately built-in backdoor that allows : - Remote access to your machine even when computer is turned off (but plugged to power & network socket). Intel's AMT is actually active when computer's power button is OFF.
- Hiding code of some apps & malware from the running system using sophisticated DRM scheme
- Installing a rootkit / trojan that cannot be removed even if the disk, RAM memory and BIOS are all wiped out clean.
- Run signed JAVA code outside of CPU !
What's more: - It works outside of the control of CPU, system and BIOS
- It's closed source (obviously)
- Intel doesn't want to say how it works
- Intel (so NSA & US govt too) has secret keys, using which they can totally control your machine with totally no way of you detecting it
- It cannot be turned completely OFF (there is a BIOS switch, but as proven - it does not work fully)
Please upvote me on reddit:http://www.reddit.com/r/Bitcoin/comments/2ri5a9/if_you_are_using_newer_intel_mainboard_with_intel/ ( reddit thread got silently mod-removed again !) Sources: http://en.wikipedia.org/wiki/Intel_Active_Management_Technologyhttps://www.fsf.org/blogs/community/active-management-technologyhttp://theinvisiblethings.blogspot.com/2013/08/thoughts-on-intels-upcoming-software.htmlhttp://theinvisiblethings.blogspot.com/2013/09/thoughts-on-intels-upcoming-software.htmlRelated: Discussion on polish Bitcoin forum: https://forum.bitcoin.pl/viewtopic.php?f=16&t=16562One of polish biggest IT news sites: http://www.dobreprogramy.pl/Komputery-z-procesorami-Intela-sa-kontrolowane-przez-Intela,News,60132.htmlhttps://twitter.com/rosyna/status/550702351703875584PS. Intel has been working on this technology for over 15 years, so their hands are deep in shit. They cannot be trusted (unless they publish the private keys and the source of the binary blobs they built in their systems). Proof: http://en.wikipedia.org/wiki/Trusted_Computinghttp://www.theregister.co.uk/2002/06/25/why_intel_loves_palladium/http://www.bluehaze.com.au/unix/palladium.html(Yeah, this stuff is REALLY old, they have been working on screwing us over together with Microsoft for a looooooooong time) EDIT:Apparently for the remote control to work, you also need to have Intel network card, so not using any Intel network hardware should keep you safe - at least from remote attack.
|
|
|
|
GreekBitcoin
Legendary
Offline
Activity: 1428
Merit: 1001
getmonero.org
|
|
January 06, 2015, 11:13:00 AM |
|
How do we know that AMD doesnt have something similar?
What can one do since it is a monopoly?
|
|
|
|
erre
Legendary
Offline
Activity: 1694
Merit: 1207
|
|
January 06, 2015, 11:14:14 AM |
|
How do we know that AMD doesnt have something similar?
What can one do since it is a monopoly?
Pen and paper ...or build your own CPU
|
|
|
|
ShadowOfHarbringer (OP)
Legendary
Offline
Activity: 1470
Merit: 1006
Bringing Legendary Har® to you since 1952
|
|
January 06, 2015, 11:18:11 AM |
|
How do we know that AMD doesnt have something similar?
We don't. But apparently, even if they have something, it is nowhere near the level of complexity and sophistication of Intel's technology. Intel has a goddamn separate CPU that you can run apps (think rootkits) on. And this special CPU has higher priority when it comes to control of the system than normal CPU. This is disgusting.
|
|
|
|
NeuroticFish
Legendary
Offline
Activity: 3892
Merit: 6623
Looking for campaign manager? Contact icopress!
|
|
January 06, 2015, 11:20:05 AM |
|
Make sure that you have a router with ARM CPU, linux and configured by yourself. Then you are at least safe when the computer is closed. Of course, the safest is to keep it unplugged or at least not connected to internet
|
|
|
|
ShadowOfHarbringer (OP)
Legendary
Offline
Activity: 1470
Merit: 1006
Bringing Legendary Har® to you since 1952
|
|
January 06, 2015, 11:29:55 AM |
|
For remote access, a cooperating network interface is required: Intel ethernet adapters, Intel WiFi adapters, and certain 3G modems are supported. If you can, replace Intel-made network interfaces with ones made by a different manufacturer, that do not support AMT. Apparently for the remote control to work, you also need to have Intel network card, so not using any Intel network hardware should keep you safe from remote attack.
|
|
|
|
erre
Legendary
Offline
Activity: 1694
Merit: 1207
|
|
January 06, 2015, 11:42:19 AM |
|
I am not tech-savy enough for all this stuff, but I hate to have gov/companies backdoors on my devices.
Are smartphone/tablets supposed to be secure? I rarely turn on my pc nowdays..
|
|
|
|
siameze
Legendary
Offline
Activity: 1064
Merit: 1000
|
|
January 06, 2015, 11:59:55 AM |
|
And this special CPU has higher priority when it comes to control of the system than normal CPU. This is disgusting.
It is, rather like Sony secretly installing rootkits as part of their DRM program. Upvoted you on reddit good Sir.
|
|
|
|
ShadowOfHarbringer (OP)
Legendary
Offline
Activity: 1470
Merit: 1006
Bringing Legendary Har® to you since 1952
|
|
January 06, 2015, 01:01:35 PM |
|
My reddit thread got silent-removed even though i had like 50 upvotes ? How the hell does reddit moderation work ?
Should I start to believe in reddit conspiracies or something ?
|
|
|
|
Carlton Banks
Legendary
Offline
Activity: 3430
Merit: 3080
|
|
January 06, 2015, 01:17:40 PM |
|
My reddit thread got silent-removed even though i had like 50 upvotes ? How the hell does reddit moderation work ?
Should I start to believe in reddit conspiracies or something ?
I don't think it's any secret that reddit has long had corporate backers, but without knowing why the mods removed the thread, it's total speculation. Either way, it makes a mockery of the whole upvote/downvote system, reddit needs a decentalised/uncensorable FOSS clone to supersede the compromised original.
|
Vires in numeris
|
|
|
cakir
Legendary
Offline
Activity: 1274
Merit: 1000
★ BitClave ICO: 15/09/17 ★
|
|
January 06, 2015, 01:23:13 PM |
|
There's always risks of course, They always want MOAR data about us. I'm using an offline old computer (pentium 4 cpu and runs original XP-not cracked) to save my BTC I'm thinking to build a mobile&secure wallet with open source hardwares.
|
|
|
|
| ,'#██+: ,█████████████' +██████████████████ ;██████████████████████ ███████: .███████` ██████ ;█████' `█████ #████# ████+ `████+ ████: ████, ████: .# █ ████ ;███+ ██ ███ ████ ████ ███' ███. '███, +███ #████ ,████ ████ ████ █████ .+██████: █████+ `███. ,███ ███████████████████████ ████ ████ ███████████████████████' :███ ███: +████████████████████████ ███` ███ █████████████████████████` ███+ ,███ ██████████████████████████ #███ '███ '██████████████████████████ ;███ #███ ███████████████████████████ ,███ ████ ███████████████████████████. .███ ████ ███████████████████████████' .███ +███ ███████████████████████████+ :███ :███ ███████████████████████████' +███ ███ ███████████████████████████. ███# ███. #██████████████████████████ ███, ████ █████████████████████████+ `███ '███ '████████████████████████ ████ ███; ███████████████████████ ███; ████ #████████████████████ ████ ███# .██████████████████ `███+ ████` ;██████████████ ████ ████ '███████#. ████. .████ █████ '████ █████ #████' █████ +█████` ██████ ,██████: `███████ ████████#;,..:+████████. ,███████████████████+ .███████████████; `+███████#,
| |
|
|
|
siameze
Legendary
Offline
Activity: 1064
Merit: 1000
|
|
January 06, 2015, 02:04:32 PM |
|
My reddit thread got silent-removed even though i had like 50 upvotes ? How the hell does reddit moderation work ?
Should I start to believe in reddit conspiracies or something ?
I don't think it's any secret that reddit has long had corporate backers, but without knowing why the mods removed the thread, it's total speculation. Either way, it makes a mockery of the whole upvote/downvote system, reddit needs a decentalised/uncensorable FOSS clone to supersede the compromised original. +1 to a decentalised/uncensorable FOSS clone. reddit is definitely not what it was in the "good ole days".
|
|
|
|
MarketNeutral
|
|
January 06, 2015, 02:47:24 PM |
|
I wish I had something encouraging to say about this, but I don't. Nevertheless, I am incredibly thankful to ShadowOfHarbringer for bringing this horror to more people's attention. The implications are staggering.
|
|
|
|
erre
Legendary
Offline
Activity: 1694
Merit: 1207
|
|
January 06, 2015, 03:20:26 PM |
|
No one will care until its too late.
I care, but i'm the average Joe, what can I do?
|
|
|
|
Christian1998
|
|
January 06, 2015, 04:19:43 PM |
|
AMD-User ^^ But why dont plug-off the computer / laptop ?!
Best regards
|
|
|
|
Carlton Banks
Legendary
Offline
Activity: 3430
Merit: 3080
|
|
January 06, 2015, 04:48:36 PM |
|
But why dont plug-off the computer / laptop ?!
Have you heard of power-over-ethernet?
|
Vires in numeris
|
|
|
jl2012
Legendary
Offline
Activity: 1792
Merit: 1111
|
|
January 06, 2015, 05:14:43 PM |
|
But why dont plug-off the computer / laptop ?!
Have you heard of power-over-ethernet? Use an external laptop battery charger so your off-line laptop will never connect to the power socket. And don't forget to wrap the laptop and your head with tinfoil
|
Donation address: 374iXxS4BuqFHsEwwxUuH3nvJ69Y7Hqur3 (Bitcoin ONLY) LRDGENPLYrcTRssGoZrsCT1hngaH3BVkM4 (LTC) PGP: D3CC 1772 8600 5BB8 FF67 3294 C524 2A1A B393 6517
|
|
|
Carlton Banks
Legendary
Offline
Activity: 3430
Merit: 3080
|
|
January 06, 2015, 06:31:43 PM |
|
But why dont plug-off the computer / laptop ?!
Have you heard of power-over-ethernet? Use an external laptop battery charger so your off-line laptop will never connect to the power socket. And don't forget to wrap the laptop and your head with tinfoil Not ethernet-over-power, power-over-ethernet. It's called grammar: the order in which words are placed determines their meaning. Give it a try sometime.
|
Vires in numeris
|
|
|
siameze
Legendary
Offline
Activity: 1064
Merit: 1000
|
|
January 06, 2015, 09:07:02 PM |
|
AMD-User ^^ But why dont plug-off the computer / laptop ?!
Best regards
Wake-On-LAN (WOL) can be used to turn on/off devices remotely. I can't remember where the links are, but a few DELL servers had this auto enabled from the factory.
|
|
|
|
newIndia
Legendary
Offline
Activity: 2226
Merit: 1052
|
|
January 06, 2015, 09:34:27 PM |
|
The Q is, how Intel will get to know which machine is to attack ? Moreover, all online bank accounts and credit or debit cards are also exposed to this vulnerability.
|
|
|
|
|