Intel released tool to see if your PC is affected by "JTAG over USB" exploit

Discussions of applications and operating systems and any problems, tips or suggestions. Win XP, 9x/2k, Linux, NT, photo editing, Virus/Spyware help
Post Reply
User avatar
FlyingPenguin
Flightless Bird
Posts: 32781
Joined: Wed Nov 22, 2000 11:13 am
Location: Central Florida
Contact:

Intel released tool to see if your PC is affected by "JTAG over USB" exploit

Post by FlyingPenguin »

Download, extract the tool, open the "Discovery.Tool.GUI" folder and run the file: INTEL-SA-00086-GUI.EXE
It tells you whether or not you're system is at risk (most likely it is if it has an Intel chipset made in the last 9 years).

This exposes the Intel Management Engine (a small microcomputer in the mobo chipset that manages BIOS & UEFI, and allows for remote administration) to be hijacked via a USB device. A properly configured USB device can completely own you PC in a manor undetectable to the OS since this run deep down in the silicon.

While you may feel that isn't much of a threat except to enterprise users, think again. 75% of the electronics we buy are made in CHINA. We've already seen Chinese made products that contain malware. You think someone over there (hacker or government sponsored) isn't going to start embedding nasty things in USB connected devices to PWN your mobo?

Sadly only Lenovo, so far, has released BIOS firmware updates to fix this. If you're affected, it's worth checking your mobo's downloads for an updated firmware in the coming month.
Affected products:
6th, 7th & 8th Generation Intel® Core™ Processor Family
Intel® Xeon® Processor E3-1200 v5 & v6 Product Family
Intel® Xeon® Processor Scalable Family
Intel® Xeon® Processor W Family
Intel® Atom® C3000 Processor Family
Apollo Lake Intel® Atom Processor E3900 series
Apollo Lake Intel® Pentium™
Celeron™ N and J series Processors
https://downloadcenter.intel.com/download/27150
Christians warn us about the anti-christ for 2,000 years, and when he shows up, they buy a bible from him.

Image
Post Reply