So today in the light of CVE-2017-5689 I learned some fun things about Intel ME/AMT... (1/N)
-
-
Replying to @RichFelker
(2/N) If you have AMT enabled and 16992 is in ip_local_port_range, outgoing connections hang when you get unlucky.https://serverfault.com/questions/605077/how-does-intel-amt-active-management-technology-not-interfere-with-the-tcp-ip …
1 reply 0 retweets 0 likes -
Replying to @RichFelker
(3/N) The impact of CVE-2017-5689 is probably fairly low for normal users. http://mjg59.dreamwidth.org/48429.html
1 reply 1 retweet 0 likes -
Replying to @RichFelker
(4/N) It is possible, at least on many systems, to effectively remove ME rather than trusting firmware patches.https://github.com/corna/me_cleaner/wiki/How-does-it-work%3F …
1 reply 0 retweets 1 like
(5/N) The safest fix is probably to refrain from using onboard Intel network interfaces and remove Intel wifi cards.
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.