• Welcome to TechPowerUp Forums, Guest! Please check out our forum guidelines for info related to our community.

Researchers Find Glaring Intel ME Security Flaws, Company Outs Detection Tool

Joined
Sep 7, 2017
Messages
3,244 (1.20/day)
System Name Grunt
Processor Ryzen 5800x
Motherboard Gigabyte x570 Gaming X
Cooling Noctua NH-U12A
Memory Corsair LPX 3600 4x8GB
Video Card(s) Gigabyte 6800 XT (reference)
Storage Samsung 980 Pro 2TB
Display(s) Samsung CFG70, Samsung NU8000 TV
Case Corsair C70
Power Supply Corsair HX750
Software Win 10 Pro
Joined
Aug 21, 2013
Messages
2,000 (0.48/day)

cadaveca

My name is Dave
Joined
Apr 10, 2006
Messages
17,232 (2.51/day)
Who runs 7980XE on Win10 Home?

Pro version atleast buddy.

http://www.techadvisor.co.uk/featur...me-vs-windows-10-pro-vs-windows-10-s-3618710/

For power users it's mainly Group Policy that allows more settings finetuning. Also has some enterprise features. But buying a 2000$ CPU and skimping on OS to save 20-80$ makes no sense to me.
Pro version also has better control for the infamous Windows Update and it's forced updates.
Uh, Hi!

My name is Dave. I am a PC enthusiast. I do motherboard reviews for this lovely site called TechPowerUp, and get hardware from the companies that make them and then test the products to the extent of their capabilities. Right now, I am using the ASRock X299-ITX/ac, and in order to truly test it's VRM capabilities, I have installed the 7980XE CPU. If I am going to recommend this board, I want to make sure that it is truly capable of pushing this CPU to decent clocks.

The differences in what different versions of Windows offers, especially with this board and its 4 SO-DIMM slots (which limits maximum memory you can install) makes no difference for this testing.


So, I didn't buy a single thing, and yeah, it makes sense for me to do this. I didn't skimp on anything, because it's all free for me. I could have installed the Pro version easily for testing (it's a simply selection when installing the OS), but I try to replicate common installation scenarios.


Thanks for the concern though. I'll be sure to keep that in mind when writing the review for this product. You'll note that when the review is published, you'll see screenshots of a 7900X CPU installed, too. I don't simply install one CPU and test a board and call it done like some other sites might do. I have also played with the 7960X too, but moved from the 16-core to the 18-core because it draws a bit more power. My 16-core is actually one damn fine CPU, to be honest, so I needed to change to a CPU that wasn't quite as good.

Have a Great day!

:lovetpu:
 
Joined
Aug 20, 2007
Messages
21,705 (3.40/day)
Location
Olympia, WA
System Name Pioneer
Processor Ryzen 9 9950X
Motherboard GIGABYTE Aorus Elite X670 AX
Cooling Noctua NH-D15 + A whole lotta Sunon, Phanteks and Corsair Maglev blower fans...
Memory 64GB (2x 32GB) G.Skill Flare X5 @ DDR5-6000 CL30
Video Card(s) XFX RX 7900 XTX Speedster Merc 310
Storage Intel 5800X Optane 800GB boot, +2x Crucial P5 Plus 2TB PCIe 4.0 NVMe SSDs
Display(s) 55" LG 55" B9 OLED 4K Display
Case Thermaltake Core X31
Audio Device(s) TOSLINK->Schiit Modi MB->Asgard 2 DAC Amp->AKG Pro K712 Headphones or HDMI->B9 OLED
Power Supply FSP Hydro Ti Pro 850W
Mouse Logitech G305 Lightspeed Wireless
Keyboard WASD Code v3 with Cherry Green keyswitches + PBT DS keycaps
Software Gentoo Linux x64 / Windows 11 Enterprise IoT 2024
It's only a matter of time before AMDs PSP system is affected similarly...

These systems are flawed to the core, and should be disablable in bios.
 
Joined
Oct 2, 2015
Messages
3,152 (0.92/day)
Location
Argentina
System Name Ciel / Akane
Processor AMD Ryzen R5 5600X / Intel Core i3 12100F
Motherboard Asus Tuf Gaming B550 Plus / Biostar H610MHP
Cooling ID-Cooling 224-XT Basic / Stock
Memory 2x 16GB Kingston Fury 3600MHz / 2x 8GB Patriot 3200MHz
Video Card(s) Gainward Ghost RTX 3060 Ti / Dell GTX 1660 SUPER
Storage NVMe Kingston KC3000 2TB + NVMe Toshiba KBG40ZNT256G + HDD WD 4TB / NVMe WD Blue SN550 512GB
Display(s) AOC Q27G3XMN / Samsung S22F350
Case Cougar MX410 Mesh-G / Generic
Audio Device(s) Kingston HyperX Cloud Stinger Core 7.1 Wireless PC
Power Supply Aerocool KCAS-500W / Gigabyte P450B
Mouse EVGA X15 / Logitech G203
Keyboard VSG Alnilam / Dell
Software Windows 11
At the very least we should have the option to disable them, even more so if we are not in the USA, or any "security sensitive enemy making" country.
 
Last edited:

rtwjunkie

PC Gaming Enthusiast
Supporter
Joined
Jul 25, 2008
Messages
14,024 (2.32/day)
Location
Louisiana
Processor Core i9-9900k
Motherboard ASRock Z390 Phantom Gaming 6
Cooling All air: 2x140mm Fractal exhaust; 3x 140mm Cougar Intake; Enermax ETS-T50 Black CPU cooler
Memory 32GB (2x16) Mushkin Redline DDR-4 3200
Video Card(s) ASUS RTX 4070 Ti Super OC 16GB
Storage 1x 1TB MX500 (OS); 2x 6TB WD Black; 1x 2TB MX500; 1x 1TB BX500 SSD; 1x 6TB WD Blue storage (eSATA)
Display(s) Infievo 27" 165Hz @ 2560 x 1440
Case Fractal Design Define R4 Black -windowed
Audio Device(s) Soundblaster Z
Power Supply Seasonic Focus GX-1000 Gold
Mouse Coolermaster Sentinel III (large palm grip!)
Keyboard Logitech G610 Orion mechanical (Cherry Brown switches)
Software Windows 10 Pro 64-bit (Start10 & Fences 3.0 installed)
Whats the benefit there buddy? Seriously?
Update control, primarily, but for those that don't care or don't need it, not as much as there used to be.
 
Joined
Apr 18, 2013
Messages
66 (0.02/day)
Location
Radio Emilia 5.9
System Name anime_server//home_pc//rufy_pc//htpc//film_server
Processor EQ8300@3.03/E7200@3.16/E8400@3.06/E5300@2.93/J1900
Motherboard Asus P5Q-DLX/MSI G31M3-L V2/GA-G41M-ES2L/AsRock Conroe1333-D667/AsRock Q1900-ITX
Cooling CM Hyper48+Vantec Tornado/stock/Asus Triton/stock/stock
Memory 2*2G PI8000+2*1G Extreme800+/2*2G PC2-6400/1*2G+1*512M PC2-6400/2*1G Kingston PC2-6400/2*4G so-DDR3
Video Card(s) Palit GTX460 1GB w EK Supreme/GTS240 1GB/Asus HD4550 512MB/Asus 7200GS 128MB/iHD
Storage too many in too many config
Display(s) Asus VS239--BenQ G922HDL--Philips 191V--Panasonic TX-40CS620--BenQ 2220HDL
Case Chieftec super towa--Nokia Style--TechSolo TC-020--Lenovo Case--NXT one
Audio Device(s) Creative Audigy!--onboard--onboard--onboard--onboard
Power Supply Corsair TX850 w Aerocool fan--Antec EA380--FSP-300-60GHS--crappy one--LC-Power LC7300
Software W7Pro x64--W8.1Pro--W7Pro x64--W7Pro--Win server 2012r2
Benchmark Scores need more GB, more GPU and more CPU.. at least can share all with my rig
well.. tested it on Core2Duo ( w7 pro 32b e w8.1 pro 64b), Core2Quad (w8.1 pro 64b ) and no one can read ME info.. maybe it's too old, or maybe is not accessible, dunno
from celeron J1900 ( w8.1 pro 64b ) with latest bios ( years old ) i got this, so i'm fine :-D
 

Attachments

  • Yay.JPG
    Yay.JPG
    87.7 KB · Views: 494
Joined
Jul 5, 2013
Messages
28,972 (6.84/day)
Update control, primarily, but for those that don't care or don't need it, not as much as there used to be.
The Update service can be disabled and enabled at will in any version of 10. You just have to go into the management console and edit the service options directly. Turn it on when you want to update, turn it off otherwise. It's not difficult.

This was funny.
upload_2017-11-23_7-3-11.png

Not surprising as the IME software is not installed or provisioned. And I'm not doing so. Still, I wonder...
 
Last edited:

AsRock

TPU addict
Joined
Jun 23, 2007
Messages
19,168 (2.98/day)
Location
UK\USA
Remember that news article a little while ago about what OS the ME used? Now you know why it was relevant and important, and why the news came out when it did, after so many years and product generations of Intel products having ME implemented in this way.


Even new systems are affected:




This is actually a pretty serious issue, IMHO. Expect nearly anything released by Intel in he last 5-8 years to need a BIOS update.

And yes, the ME can be updated separately formt the BIOS itself. Some obards even offer the ability to update either part on it's own, while some boards only update both, and some do it separately, but never tell you...

Surly the never systems will get support, how ever those with older systems are screwed as a lot of manufactures will not care either.
 

rtwjunkie

PC Gaming Enthusiast
Supporter
Joined
Jul 25, 2008
Messages
14,024 (2.32/day)
Location
Louisiana
Processor Core i9-9900k
Motherboard ASRock Z390 Phantom Gaming 6
Cooling All air: 2x140mm Fractal exhaust; 3x 140mm Cougar Intake; Enermax ETS-T50 Black CPU cooler
Memory 32GB (2x16) Mushkin Redline DDR-4 3200
Video Card(s) ASUS RTX 4070 Ti Super OC 16GB
Storage 1x 1TB MX500 (OS); 2x 6TB WD Black; 1x 2TB MX500; 1x 1TB BX500 SSD; 1x 6TB WD Blue storage (eSATA)
Display(s) Infievo 27" 165Hz @ 2560 x 1440
Case Fractal Design Define R4 Black -windowed
Audio Device(s) Soundblaster Z
Power Supply Seasonic Focus GX-1000 Gold
Mouse Coolermaster Sentinel III (large palm grip!)
Keyboard Logitech G610 Orion mechanical (Cherry Brown switches)
Software Windows 10 Pro 64-bit (Start10 & Fences 3.0 installed)
The Update service can be disabled and enabled at will in any version of 10. You just have to go into the management console and edit the service options directly. Turn it on when you want to update, turn it off otherwise. It's not difficult.
Yes you can, but not to the detail level of.Group Policy Editor.
 
Joined
May 13, 2010
Messages
6,111 (1.14/day)
System Name RemixedBeast-NX
Processor Intel Xeon E5-2690 @ 2.9Ghz (8C/16T)
Motherboard Dell Inc. 08HPGT (CPU 1)
Cooling Dell Standard
Memory 24GB ECC
Video Card(s) Gigabyte Nvidia RTX2060 6GB
Storage 2TB Samsung 860 EVO SSD//2TB WD Black HDD
Display(s) Samsung SyncMaster P2350 23in @ 1920x1080 + Dell E2013H 20 in @1600x900
Case Dell Precision T3600 Chassis
Audio Device(s) Beyerdynamic DT770 Pro 80 // Fiio E7 Amp/DAC
Power Supply 630w Dell T3600 PSU
Mouse Logitech G700s/G502
Keyboard Logitech K740
VR HMD Linktr.ee/remixedcat // for my music ♡♡
Software Linux Mint 20
Benchmark Scores Network: APs: Ubiquiti Unifi AP-AC-LR and Lite Router/Sw:Meraki MX64 MS220-8P
Joined
May 13, 2010
Messages
6,111 (1.14/day)
System Name RemixedBeast-NX
Processor Intel Xeon E5-2690 @ 2.9Ghz (8C/16T)
Motherboard Dell Inc. 08HPGT (CPU 1)
Cooling Dell Standard
Memory 24GB ECC
Video Card(s) Gigabyte Nvidia RTX2060 6GB
Storage 2TB Samsung 860 EVO SSD//2TB WD Black HDD
Display(s) Samsung SyncMaster P2350 23in @ 1920x1080 + Dell E2013H 20 in @1600x900
Case Dell Precision T3600 Chassis
Audio Device(s) Beyerdynamic DT770 Pro 80 // Fiio E7 Amp/DAC
Power Supply 630w Dell T3600 PSU
Mouse Logitech G700s/G502
Keyboard Logitech K740
VR HMD Linktr.ee/remixedcat // for my music ♡♡
Software Linux Mint 20
Benchmark Scores Network: APs: Ubiquiti Unifi AP-AC-LR and Lite Router/Sw:Meraki MX64 MS220-8P
Joined
May 13, 2010
Messages
6,111 (1.14/day)
System Name RemixedBeast-NX
Processor Intel Xeon E5-2690 @ 2.9Ghz (8C/16T)
Motherboard Dell Inc. 08HPGT (CPU 1)
Cooling Dell Standard
Memory 24GB ECC
Video Card(s) Gigabyte Nvidia RTX2060 6GB
Storage 2TB Samsung 860 EVO SSD//2TB WD Black HDD
Display(s) Samsung SyncMaster P2350 23in @ 1920x1080 + Dell E2013H 20 in @1600x900
Case Dell Precision T3600 Chassis
Audio Device(s) Beyerdynamic DT770 Pro 80 // Fiio E7 Amp/DAC
Power Supply 630w Dell T3600 PSU
Mouse Logitech G700s/G502
Keyboard Logitech K740
VR HMD Linktr.ee/remixedcat // for my music ♡♡
Software Linux Mint 20
Benchmark Scores Network: APs: Ubiquiti Unifi AP-AC-LR and Lite Router/Sw:Meraki MX64 MS220-8P
Mine does have vpro
 
Joined
Nov 21, 2010
Messages
2,356 (0.45/day)
Location
Right where I want to be
System Name Miami
Processor Ryzen 3800X
Motherboard Asus Crosshair VII Formula
Cooling Ek Velocity/ 2x 280mm Radiators/ Alphacool fullcover
Memory F4-3600C16Q-32GTZNC
Video Card(s) XFX 6900 XT Speedster 0
Storage 1TB WD M.2 SSD/ 2TB WD SN750/ 4TB WD Black HDD
Display(s) DELL AW3420DW / HP ZR24w
Case Lian Li O11 Dynamic XL
Audio Device(s) EVGA Nu Audio
Power Supply Seasonic Prime Gold 1000W+750W
Mouse Corsair Scimitar/Glorious Model O-
Keyboard Corsair K95 Platinum
Software Windows 10 Pro
Well that's not how national security works, not after 9/11 & in many places around the world.

No, it does. Then if the NSA/CIA can't take no for an answer they then have to comeback with a warrant or a writ of mandate from whatever
court, secret or not idc, to compel Intel to do so.​
 
Joined
Jul 5, 2013
Messages
28,972 (6.84/day)
No, it does. Then if the NSA/CIA can't take no for an answer they then have to comeback with a warrant or a writ of mandate from whatever
court, secret or not idc, to compel Intel to do so.
That's not the way it works. Those agencies can request a contract with Intel(or anyone else) to build something for them, a product made in a certain way, but there is no law that requires them to do so. In fact, there are laws that prevent the government from that very behavior. Any company that chooses to engage in such efforts does so at their own discretion. They can not be forcibly compelled.
 
Joined
Mar 24, 2010
Messages
5,047 (0.93/day)
Location
Iberian Peninsula
Tool reports I am vulnerable.
Nothing new in Win Update today.
Nothing on mobo maker support site (MSI)
 
Joined
Nov 21, 2010
Messages
2,356 (0.45/day)
Location
Right where I want to be
System Name Miami
Processor Ryzen 3800X
Motherboard Asus Crosshair VII Formula
Cooling Ek Velocity/ 2x 280mm Radiators/ Alphacool fullcover
Memory F4-3600C16Q-32GTZNC
Video Card(s) XFX 6900 XT Speedster 0
Storage 1TB WD M.2 SSD/ 2TB WD SN750/ 4TB WD Black HDD
Display(s) DELL AW3420DW / HP ZR24w
Case Lian Li O11 Dynamic XL
Audio Device(s) EVGA Nu Audio
Power Supply Seasonic Prime Gold 1000W+750W
Mouse Corsair Scimitar/Glorious Model O-
Keyboard Corsair K95 Platinum
Software Windows 10 Pro
That's not the way it works. Those agencies can request a contract with Intel(or anyone else) to build something for them, a product made in a certain way, but there is no law that requires them to do so. In fact, there are laws that prevent the government from that very behavior. Any company that chooses to engage in such efforts does so at their own discretion. They can not be forcibly compelled.

There's a clause in the patriot act that allows the government to get what they want through secret courts. Heck, the San Bernandino case would have probably headed that route had it not been publicized so greatly. Companies can always refuse, and the Gov't has methods to ultimately push the issue as long as they can justifiably do so.
 
Joined
Jul 5, 2013
Messages
28,972 (6.84/day)
There's a clause in the patriot act that allows the government to get what they want through secret courts. Heck, the San Bernandino case would have probably headed that route had it not been publicized so greatly. Companies can always refuse, and the Gov't has methods to ultimately push the issue as long as they can justifiably do so.
That is not what the Patriot Act grants in the way of authority and powers. Your understanding of such seems very misguided. Intel may have co-operated at will, but the government can not force the issue. Otherwise that same case, where Apple was concerned, would have progressed very differently.

Intel's ME is not a government purposed technology. It is meant for business and enterprise sectors for asset auditing and management. Governments can utilize the technology to the same effect, but it was not specifically designed for them. Additionally, testing has already been conducted the prove the vulnerability can only be taken advantage of if ME is enabled AND provisioned, which requires a software element.
 
Last edited:
Top