3 ms·
I think AMT needs to be provisioned on target computer to be exploitable.
by ppoint 9y ago
I think AMT needs to be provisioned on target computer to be exploitable.
- AnimalMuppet 9y agoBut to find out if it is, I need to go into the BIOS, right? Isn't it easier just to try going to a port?
- orblivion 9y agoI keep reading that if you "disable AMT" in the BIOS (on my Lenovo, anyway) it just resets the settings. A complete WTF but that's what I've been reading.
- ppoint 9y agoYea, maybe. going to the port is less conclusive in general case. E.g. you have some firewalls/other networking devices/etc in the middle that would deny access to that port and it would make you think it's disabled but it's actually not.
- tyingq 9y agoThere is also a local, non root user exploit to provision AMT described in Intel's announcement.
- ppoint 9y agoYes. To be honest, Intel's announcement was a little dry, lacking details.