Intel Skylake processors can be hacked via USB ports

in #hacking7 years ago
Back in September 2017, experts from the Positive Technologies expressed interest in the development of such technology that could still attack the secretive Intel Management Engine (IME) technology from the USB port. Now, they have disclosed additional information about their plans, according to the experts, in December 2017, they wanted to show that they were actually going through the God-Mode hack on any motherboard to "unsigned code in the Platform Controller Hub" Is identified with.

Intel has recently switched to Embedded Minix operating system. Researchers have found a vulnerability in the CPU component of IME, a small microprocessor, which is present within the platform controller or chipset, each PC motherboard made for the Intel processor.

IME was introduced to allow functions such as remote booting and administration, but it also handles the initialization of CPU and its power management.


The platform controller center is the central point where IME is located; Its operating system, Minix, has its CPU and allows the Sisadman to control / configure / wipe machines remotely on a network. The platform is very useful if you want to manage a large network of computers, especially in situations where the endpoint OS is broken and does not boot properly.


Security flaw is reportedly affecting almost every CPU, which is part of the Intel 6th Generic 'SkyLake' core CPU or newer. It can be bridged in the USB subsystem to allow remote access, which is a common attack vector.


Therefore, when experts say that they can hijack the management engine, it means that they can take control of a box completely, whether the operating system or antivirus is installed. This powerful god-mode hack is possible through attack, which is relatively new and is used with caution on users to spy on or kidnap corporate data.


It has been a long suspicion that IMEs allow for qualified backdoors that governments and other agencies have used to spy on users, but due to its deep low level integration with the system, it is difficult to disable has gone. Some security experts have also called it a black box of exploitation and bugs.


Sort:  

full 100 percent upVote for your boss efforts via @cnts :}

thanks my dear...

That a good tricks @zahidsun

i also invite you to my blog and request you upvote my comments.

Coin Marketplace

STEEM 0.17
TRX 0.15
JST 0.028
BTC 62025.78
ETH 2417.09
USDT 1.00
SBD 2.49