• Welcome to TechPowerUp Forums, Guest! Please check out our forum guidelines for info related to our community.

Researchers Find Glaring Intel ME Security Flaws, Company Outs Detection Tool

Joined
Sep 7, 2017
Messages
3,244 (1.34/day)
System Name Grunt
Processor Ryzen 5800x
Motherboard Gigabyte x570 Gaming X
Cooling Noctua NH-U12A
Memory Corsair LPX 3600 4x8GB
Video Card(s) Gigabyte 6800 XT (reference)
Storage Samsung 980 Pro 2TB
Display(s) Samsung CFG70, Samsung NU8000 TV
Case Corsair C70
Power Supply Corsair HX750
Software Win 10 Pro
Joined
Aug 21, 2013
Messages
1,694 (0.43/day)

cadaveca

My name is Dave
Joined
Apr 10, 2006
Messages
17,232 (2.61/day)
Who runs 7980XE on Win10 Home?

Pro version atleast buddy.

http://www.techadvisor.co.uk/featur...me-vs-windows-10-pro-vs-windows-10-s-3618710/

For power users it's mainly Group Policy that allows more settings finetuning. Also has some enterprise features. But buying a 2000$ CPU and skimping on OS to save 20-80$ makes no sense to me.
Pro version also has better control for the infamous Windows Update and it's forced updates.
Uh, Hi!

My name is Dave. I am a PC enthusiast. I do motherboard reviews for this lovely site called TechPowerUp, and get hardware from the companies that make them and then test the products to the extent of their capabilities. Right now, I am using the ASRock X299-ITX/ac, and in order to truly test it's VRM capabilities, I have installed the 7980XE CPU. If I am going to recommend this board, I want to make sure that it is truly capable of pushing this CPU to decent clocks.

The differences in what different versions of Windows offers, especially with this board and its 4 SO-DIMM slots (which limits maximum memory you can install) makes no difference for this testing.


So, I didn't buy a single thing, and yeah, it makes sense for me to do this. I didn't skimp on anything, because it's all free for me. I could have installed the Pro version easily for testing (it's a simply selection when installing the OS), but I try to replicate common installation scenarios.


Thanks for the concern though. I'll be sure to keep that in mind when writing the review for this product. You'll note that when the review is published, you'll see screenshots of a 7900X CPU installed, too. I don't simply install one CPU and test a board and call it done like some other sites might do. I have also played with the 7960X too, but moved from the 16-core to the 18-core because it draws a bit more power. My 16-core is actually one damn fine CPU, to be honest, so I needed to change to a CPU that wasn't quite as good.

Have a Great day!

:lovetpu:
 
Joined
Aug 20, 2007
Messages
20,787 (3.41/day)
System Name Pioneer
Processor Ryzen R9 7950X
Motherboard GIGABYTE Aorus Elite X670 AX
Cooling Noctua NH-D15 + A whole lotta Sunon and Corsair Maglev blower fans...
Memory 64GB (4x 16GB) G.Skill Flare X5 @ DDR5-6000 CL30
Video Card(s) XFX RX 7900 XTX Speedster Merc 310
Storage 2x Crucial P5 Plus 2TB PCIe 4.0 NVMe SSDs
Display(s) 55" LG 55" B9 OLED 4K Display
Case Thermaltake Core X31
Audio Device(s) TOSLINK->Schiit Modi MB->Asgard 2 DAC Amp->AKG Pro K712 Headphones or HDMI->B9 OLED
Power Supply FSP Hydro Ti Pro 850W
Mouse Logitech G305 Lightspeed Wireless
Keyboard WASD Code v3 with Cherry Green keyswitches + PBT DS keycaps
Software Gentoo Linux x64
It's only a matter of time before AMDs PSP system is affected similarly...

These systems are flawed to the core, and should be disablable in bios.
 
Joined
Oct 2, 2015
Messages
2,992 (0.96/day)
Location
Argentina
System Name Ciel
Processor AMD Ryzen R5 5600X
Motherboard Asus Tuf Gaming B550 Plus
Cooling ID-Cooling 224-XT Basic
Memory 2x 16GB Kingston Fury 3600MHz@3933MHz
Video Card(s) Gainward Ghost 3060 Ti 8GB + Sapphire Pulse RX 6600 8GB
Storage NVMe Kingston KC3000 2TB + NVMe Toshiba KBG40ZNT256G + HDD WD 4TB
Display(s) AOC Q27G3XMN + Samsung S22F350
Case Cougar MX410 Mesh-G
Audio Device(s) Kingston HyperX Cloud Stinger Core 7.1 Wireless PC
Power Supply Aerocool KCAS-500W
Mouse EVGA X15
Keyboard VSG Alnilam
Software Windows 11
At the very least we should have the option to disable them, even more so if we are not in the USA, or any "security sensitive enemy making" country.
 
Last edited:

rtwjunkie

PC Gaming Enthusiast
Supporter
Joined
Jul 25, 2008
Messages
13,909 (2.42/day)
Location
Louisiana -Laissez les bons temps rouler!
System Name Bayou Phantom
Processor Core i7-8700k 4.4Ghz @ 1.18v
Motherboard ASRock Z390 Phantom Gaming 6
Cooling All air: 2x140mm Fractal exhaust; 3x 140mm Cougar Intake; Enermax T40F Black CPU cooler
Memory 2x 16GB Mushkin Redline DDR-4 3200
Video Card(s) EVGA RTX 2080 Ti Xc
Storage 1x 500 MX500 SSD; 2x 6TB WD Black; 1x 4TB WD Black; 1x400GB VelRptr; 1x 4TB WD Blue storage (eSATA)
Display(s) HP 27q 27" IPS @ 2560 x 1440
Case Fractal Design Define R4 Black w/Titanium front -windowed
Audio Device(s) Soundblaster Z
Power Supply Seasonic X-850
Mouse Coolermaster Sentinel III (large palm grip!)
Keyboard Logitech G610 Orion mechanical (Cherry Brown switches)
Software Windows 10 Pro 64-bit (Start10 & Fences 3.0 installed)
Whats the benefit there buddy? Seriously?
Update control, primarily, but for those that don't care or don't need it, not as much as there used to be.
 
Joined
Apr 18, 2013
Messages
66 (0.02/day)
Location
Radio Emilia 5.9
System Name anime_server//home_pc//rufy_pc//htpc//film_server
Processor EQ8300@3.03/E7200@3.16/E8400@3.06/E5300@2.93/J1900
Motherboard Asus P5Q-DLX/MSI G31M3-L V2/GA-G41M-ES2L/AsRock Conroe1333-D667/AsRock Q1900-ITX
Cooling CM Hyper48+Vantec Tornado/stock/Asus Triton/stock/stock
Memory 2*2G PI8000+2*1G Extreme800+/2*2G PC2-6400/1*2G+1*512M PC2-6400/2*1G Kingston PC2-6400/2*4G so-DDR3
Video Card(s) Palit GTX460 1GB w EK Supreme/GTS240 1GB/Asus HD4550 512MB/Asus 7200GS 128MB/iHD
Storage too many in too many config
Display(s) Asus VS239--BenQ G922HDL--Philips 191V--Panasonic TX-40CS620--BenQ 2220HDL
Case Chieftec super towa--Nokia Style--TechSolo TC-020--Lenovo Case--NXT one
Audio Device(s) Creative Audigy!--onboard--onboard--onboard--onboard
Power Supply Corsair TX850 w Aerocool fan--Antec EA380--FSP-300-60GHS--crappy one--LC-Power LC7300
Software W7Pro x64--W8.1Pro--W7Pro x64--W7Pro--Win server 2012r2
Benchmark Scores need more GB, more GPU and more CPU.. at least can share all with my rig
well.. tested it on Core2Duo ( w7 pro 32b e w8.1 pro 64b), Core2Quad (w8.1 pro 64b ) and no one can read ME info.. maybe it's too old, or maybe is not accessible, dunno
from celeron J1900 ( w8.1 pro 64b ) with latest bios ( years old ) i got this, so i'm fine :-D
 

Attachments

  • Yay.JPG
    Yay.JPG
    87.7 KB · Views: 479
Joined
Jul 5, 2013
Messages
25,559 (6.47/day)
Update control, primarily, but for those that don't care or don't need it, not as much as there used to be.
The Update service can be disabled and enabled at will in any version of 10. You just have to go into the management console and edit the service options directly. Turn it on when you want to update, turn it off otherwise. It's not difficult.

This was funny.
upload_2017-11-23_7-3-11.png

Not surprising as the IME software is not installed or provisioned. And I'm not doing so. Still, I wonder...
 
Last edited:

AsRock

TPU addict
Joined
Jun 23, 2007
Messages
18,875 (3.07/day)
Location
UK\USA
Processor AMD 3900X \ AMD 7700X
Motherboard ASRock AM4 X570 Pro 4 \ ASUS X670Xe TUF
Cooling D15
Memory Patriot 2x16GB PVS432G320C6K \ G.Skill Flare X5 F5-6000J3238F 2x16GB
Video Card(s) eVga GTX1060 SSC \ XFX RX 6950XT RX-695XATBD9
Storage Sammy 860, MX500, Sabrent Rocket 4 Sammy Evo 980 \ 1xSabrent Rocket 4+, Sammy 2x990 Pro
Display(s) Samsung 1080P \ LG 43UN700
Case Fractal Design Pop Air 2x140mm fans from Torrent \ Fractal Design Torrent 2 SilverStone FHP141x2
Audio Device(s) Yamaha RX-V677 \ Yamaha CX-830+Yamaha MX-630 Infinity RS4000\Paradigm P Studio 20, Blue Yeti
Power Supply Seasonic Prime TX-750 \ Corsair RM1000X Shift
Mouse Steelseries Sensei wireless \ Steelseries Sensei wireless
Keyboard Logitech K120 \ Wooting Two HE
Benchmark Scores Meh benchmarks.
Remember that news article a little while ago about what OS the ME used? Now you know why it was relevant and important, and why the news came out when it did, after so many years and product generations of Intel products having ME implemented in this way.


Even new systems are affected:




This is actually a pretty serious issue, IMHO. Expect nearly anything released by Intel in he last 5-8 years to need a BIOS update.

And yes, the ME can be updated separately formt the BIOS itself. Some obards even offer the ability to update either part on it's own, while some boards only update both, and some do it separately, but never tell you...

Surly the never systems will get support, how ever those with older systems are screwed as a lot of manufactures will not care either.
 

rtwjunkie

PC Gaming Enthusiast
Supporter
Joined
Jul 25, 2008
Messages
13,909 (2.42/day)
Location
Louisiana -Laissez les bons temps rouler!
System Name Bayou Phantom
Processor Core i7-8700k 4.4Ghz @ 1.18v
Motherboard ASRock Z390 Phantom Gaming 6
Cooling All air: 2x140mm Fractal exhaust; 3x 140mm Cougar Intake; Enermax T40F Black CPU cooler
Memory 2x 16GB Mushkin Redline DDR-4 3200
Video Card(s) EVGA RTX 2080 Ti Xc
Storage 1x 500 MX500 SSD; 2x 6TB WD Black; 1x 4TB WD Black; 1x400GB VelRptr; 1x 4TB WD Blue storage (eSATA)
Display(s) HP 27q 27" IPS @ 2560 x 1440
Case Fractal Design Define R4 Black w/Titanium front -windowed
Audio Device(s) Soundblaster Z
Power Supply Seasonic X-850
Mouse Coolermaster Sentinel III (large palm grip!)
Keyboard Logitech G610 Orion mechanical (Cherry Brown switches)
Software Windows 10 Pro 64-bit (Start10 & Fences 3.0 installed)
The Update service can be disabled and enabled at will in any version of 10. You just have to go into the management console and edit the service options directly. Turn it on when you want to update, turn it off otherwise. It's not difficult.
Yes you can, but not to the detail level of.Group Policy Editor.
 
Joined
May 13, 2010
Messages
5,703 (1.12/day)
System Name RemixedBeast-NX
Processor Intel Xeon E5-2690 @ 2.9Ghz (8C/16T)
Motherboard Dell Inc. 08HPGT (CPU 1)
Cooling Dell Standard
Memory 24GB ECC
Video Card(s) Gigabyte Nvidia RTX2060 6GB
Storage 2TB Samsung 860 EVO SSD//2TB WD Black HDD
Display(s) Samsung SyncMaster P2350 23in @ 1920x1080 + Dell E2013H 20 in @1600x900
Case Dell Precision T3600 Chassis
Audio Device(s) Beyerdynamic DT770 Pro 80 // Fiio E7 Amp/DAC
Power Supply 630w Dell T3600 PSU
Mouse Logitech G700s/G502
Keyboard Logitech K740
Software Linux Mint 20
Benchmark Scores Network: APs: Cisco Meraki MR32, Ubiquiti Unifi AP-AC-LR and Lite Router/Sw:Meraki MX64 MS220-8P
Joined
May 13, 2010
Messages
5,703 (1.12/day)
System Name RemixedBeast-NX
Processor Intel Xeon E5-2690 @ 2.9Ghz (8C/16T)
Motherboard Dell Inc. 08HPGT (CPU 1)
Cooling Dell Standard
Memory 24GB ECC
Video Card(s) Gigabyte Nvidia RTX2060 6GB
Storage 2TB Samsung 860 EVO SSD//2TB WD Black HDD
Display(s) Samsung SyncMaster P2350 23in @ 1920x1080 + Dell E2013H 20 in @1600x900
Case Dell Precision T3600 Chassis
Audio Device(s) Beyerdynamic DT770 Pro 80 // Fiio E7 Amp/DAC
Power Supply 630w Dell T3600 PSU
Mouse Logitech G700s/G502
Keyboard Logitech K740
Software Linux Mint 20
Benchmark Scores Network: APs: Cisco Meraki MR32, Ubiquiti Unifi AP-AC-LR and Lite Router/Sw:Meraki MX64 MS220-8P
Joined
May 13, 2010
Messages
5,703 (1.12/day)
System Name RemixedBeast-NX
Processor Intel Xeon E5-2690 @ 2.9Ghz (8C/16T)
Motherboard Dell Inc. 08HPGT (CPU 1)
Cooling Dell Standard
Memory 24GB ECC
Video Card(s) Gigabyte Nvidia RTX2060 6GB
Storage 2TB Samsung 860 EVO SSD//2TB WD Black HDD
Display(s) Samsung SyncMaster P2350 23in @ 1920x1080 + Dell E2013H 20 in @1600x900
Case Dell Precision T3600 Chassis
Audio Device(s) Beyerdynamic DT770 Pro 80 // Fiio E7 Amp/DAC
Power Supply 630w Dell T3600 PSU
Mouse Logitech G700s/G502
Keyboard Logitech K740
Software Linux Mint 20
Benchmark Scores Network: APs: Cisco Meraki MR32, Ubiquiti Unifi AP-AC-LR and Lite Router/Sw:Meraki MX64 MS220-8P
Mine does have vpro
 
Joined
Nov 21, 2010
Messages
2,232 (0.46/day)
Location
Right where I want to be
System Name Miami
Processor Ryzen 3800X
Motherboard Asus Crosshair VII Formula
Cooling Ek Velocity/ 2x 280mm Radiators/ Alphacool fullcover
Memory F4-3600C16Q-32GTZNC
Video Card(s) XFX 6900 XT Speedster 0
Storage 1TB WD M.2 SSD/ 2TB WD SN750/ 4TB WD Black HDD
Display(s) DELL AW3420DW / HP ZR24w
Case Lian Li O11 Dynamic XL
Audio Device(s) EVGA Nu Audio
Power Supply Seasonic Prime Gold 1000W+750W
Mouse Corsair Scimitar/Glorious Model O-
Keyboard Corsair K95 Platinum
Software Windows 10 Pro
Well that's not how national security works, not after 9/11 & in many places around the world.

No, it does. Then if the NSA/CIA can't take no for an answer they then have to comeback with a warrant or a writ of mandate from whatever
court, secret or not idc, to compel Intel to do so.​
 
Joined
Jul 5, 2013
Messages
25,559 (6.47/day)
No, it does. Then if the NSA/CIA can't take no for an answer they then have to comeback with a warrant or a writ of mandate from whatever
court, secret or not idc, to compel Intel to do so.
That's not the way it works. Those agencies can request a contract with Intel(or anyone else) to build something for them, a product made in a certain way, but there is no law that requires them to do so. In fact, there are laws that prevent the government from that very behavior. Any company that chooses to engage in such efforts does so at their own discretion. They can not be forcibly compelled.
 
Joined
Mar 24, 2010
Messages
5,047 (0.98/day)
Location
Iberian Peninsula
Tool reports I am vulnerable.
Nothing new in Win Update today.
Nothing on mobo maker support site (MSI)
 
Joined
Nov 21, 2010
Messages
2,232 (0.46/day)
Location
Right where I want to be
System Name Miami
Processor Ryzen 3800X
Motherboard Asus Crosshair VII Formula
Cooling Ek Velocity/ 2x 280mm Radiators/ Alphacool fullcover
Memory F4-3600C16Q-32GTZNC
Video Card(s) XFX 6900 XT Speedster 0
Storage 1TB WD M.2 SSD/ 2TB WD SN750/ 4TB WD Black HDD
Display(s) DELL AW3420DW / HP ZR24w
Case Lian Li O11 Dynamic XL
Audio Device(s) EVGA Nu Audio
Power Supply Seasonic Prime Gold 1000W+750W
Mouse Corsair Scimitar/Glorious Model O-
Keyboard Corsair K95 Platinum
Software Windows 10 Pro
That's not the way it works. Those agencies can request a contract with Intel(or anyone else) to build something for them, a product made in a certain way, but there is no law that requires them to do so. In fact, there are laws that prevent the government from that very behavior. Any company that chooses to engage in such efforts does so at their own discretion. They can not be forcibly compelled.

There's a clause in the patriot act that allows the government to get what they want through secret courts. Heck, the San Bernandino case would have probably headed that route had it not been publicized so greatly. Companies can always refuse, and the Gov't has methods to ultimately push the issue as long as they can justifiably do so.
 
Joined
Jul 5, 2013
Messages
25,559 (6.47/day)
There's a clause in the patriot act that allows the government to get what they want through secret courts. Heck, the San Bernandino case would have probably headed that route had it not been publicized so greatly. Companies can always refuse, and the Gov't has methods to ultimately push the issue as long as they can justifiably do so.
That is not what the Patriot Act grants in the way of authority and powers. Your understanding of such seems very misguided. Intel may have co-operated at will, but the government can not force the issue. Otherwise that same case, where Apple was concerned, would have progressed very differently.

Intel's ME is not a government purposed technology. It is meant for business and enterprise sectors for asset auditing and management. Governments can utilize the technology to the same effect, but it was not specifically designed for them. Additionally, testing has already been conducted the prove the vulnerability can only be taken advantage of if ME is enabled AND provisioned, which requires a software element.
 
Last edited:
Top