4 ms·
Please consider the risks of the following vulnerability before deciding whether or not to undervolt: https://plundervolt.com/ https://plundervolt.com/
by voidbert 2y ago
Please consider the risks of the following vulnerability before deciding whether or not to undervolt: https://plundervolt.com/ https://plundervolt.com/
- rany_ 2y agoIn all likelihood this tool does not work for most users, specifically in response to this vulnerability. If you're on the latest microcode, undervolting is no longer possible due to Intel's mitigation: https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00289.html https://www.intel.com/content/www/us/en/security-center/advi...
- gravescale 2y agoWhich is a pity because my i7 Lenovo laptop is acoustically and thermally some kind of jet turbine in a case, because I was foolish enough to believe a review, and I really wish I could undervolt it so it can make it to lunchtime on a charge.
- rany_ 2y agoI was actually wrong about that, it turned out to be possible on my 11th gen Intel CPU but it was definitely not as easy as it should've been. I used https://github.com/datasone/setup_var.efi https://github.com/datasone/setup_var.efi to modify the UEFI variables. The README has all the info you'd need. It turns out that both a BIOS and microcode update is required to kill off this feature, and you could just configure the BIOS to not lock it.
- yjftsjthsd-h 2y ago> We were able to corrupt the integrity of Intel SGX on Intel Core processors by controling the voltage when executing enclave computations > If you are not using SGX, no actions are required. If you are using SGX, it suffices to apply the microcode update provided by Intel to mitigate Plundervolt. It's not nothing, but that seems minor to irrelevant to most people.
- aftbit 2y agoWow, I never considered a power attack from software of an untrusted OS. Ring -1 and SGX and the like lead to some very harsh security environments for modern processors. IMO if you want cryptographic security, you should probably use an external component that you control, but that isn't always possible and is never the cheaper option.
- dannyw 2y agoIsn’t SGX mostly used for DRM, remote attestation, and other anti-consumer stuff in practice today? I haven’t came across a use case of SGX that benefits me.
- mscrivo 2y agoHere's one: https://signal.org/blog/private-contact-discovery/ https://signal.org/blog/private-contact-discovery/
- RussianCow 2y agoBut that's something that Signal implements on their own backend, not something that runs on consumer devices, so it's not really relevant to a discussion about the risks of undervolting your CPU.
- mscrivo 2y agoI was directly replying to the parent's question of whether there were any uses of SGX that were not anti-consumer. Signal's use of it, is very much in line with my thinking of what constitutes pro-consumer. I agree though, we're all getting slightly off topic
- AshamedCaptain 2y agoExcept when Apple does it (on their server hardware). Then it supposedly benefits you. See the thread for the "Private Cloud" analysis.
- bobbiechen 2y agoSGX is actually deprecated on client devices like PCs, so it is rather difficult to use it in anti-consumer ways now (and as mentioned in a sibling thread, makes this rather irrelevant to the topic of undervolting your own PC). In my experience (working in the field at Anjuna), SGX and other Confidential Computing are quietly used on the server-side in enterprises a lot. It's a part of defense-in-depth, often to protect critical secrets and cryptographic keys, or the systems that manage them.
- tedunangst 2y agoIf you're in a position to choose not to undervolt, you're not vulnerable.
- gruez 2y agoAren't you vulnerable to this regardless of whether wether you're using this tool? The vulnerability in question relies on untrusted code being able to lower voltages to very low levels, causing the cpu to malfunction. Using this tool or having it installed isn't a relevant factor. If you have untrusted code running on your PC, it's already game over, and any malicious tool can use the same api this tool uses to control voltages.
- Bognar 2y agoNot exactly. The promise of SGX and secure hardware enclaves is that the code that executes there should run with access to protected encrypted memory pages (enforced by the CPU VMM), and the state of the enclave can be remotely attested. Basically, it's designed to run a secure application in an untrusted computing environment as long as you trust the hardware to implement the features correctly. That last part being the rub.
- damsalor 2y agoYea about that „promise“ …