[tor-relays] Exploiting firmware

grarpamp grarpamp at gmail.com
Fri Dec 9 09:17:49 UTC 2016


>> Intel ME/AMT concerns me too

> AMD Family 15h itself is safe.

No one has any proof of that for any modern cpu from any
maker, featureset irrelavant. They all accept microcode updates,
which btw are all encrypted closed binary blobs. And the
chips themselves are fully closed source containing billions
of transistors. You simply have no idea what's in there
and no way to economically and publicly test or negotiate
to find out and openly publish it all.

Talking about known shit like advertised ME/AMT + LM-NIC's
corp management platform is fine, you might be able to mitigate.
But it's the unknown that will kill you.

Billions of secret transistors... billions.
Not good, and not necessary.

#OpenFabs printing #OpenDesigns


More information about the tor-relays mailing list