Skip to main content
  1. Home
  2. Computing
  3. News

Intel warned Chinese tech firms of security flaws before telling U.S. government

Add as a preferred source on Google
top tech stories intel
Image used with permission by copyright holder

Intel warned certain customers, including Chinese tech firms, of the Spectre and Meltdown security flaws before notifying the United States government, the Wall Street Journal reportedThe flaws were first discovered by Google’s Project Zero team in June 2017. Intel held off on disclosing the issue while it worked on possible fixes. The company planned to make the announcement on January 9, but The Register broke the story on January 2. Intel then confirmed the news the next day.

Intel did notify several major tech firms in an effort to limit the potential damage and help work on fixes. A representative from the Department of Homeland Security said that the department did not learn of the flaws until the news was broken, however. Homeland Security is often notified of such issues before the public, and often acts as a source of guidance for how to address them.

Recommended Videos

In response to questions from Rep. Greg Walden (R-Ore.), Intel has since revealed the reason it didn’t disclose the flaws to government agencies and officials. It claimed that since there was “no indication that any of these vulnerabilities had been exploited by malicious actors,” it didn’t see the need, according to Reuters. It also revealed that it didn’t think the flaw would be capable of harming critical infrastructure because it didn’t believe it could affect industrial control systems.

Alphabet, a department of which discovered the Meltdown and Spectre flaws, had extended its typical 90-day grace period before revealing the bug to the public twice, to January 3 and then January 9.

The NSA was one of those agencies left in the dark about the problem. Rob Joyce, the White House’s top official on matters of cybersecurity, sent out a tweet saying that the NSA was unaware of the vulnerabilities.

Intel refused to name any of the companies it warned prior to the scheduled January 9 announcement, though several of the companies had been identified, including Microsoft, Amazon, Chinese computer manufacturer Lenovo, and Chinese cloud-computing firm Alibaba Group Holding. A representative from Intel said that it had planned to brief others, including the U.S. government, prior to the January 9 announcement, but the company said that it was unable to do so because the story was reported sooner than expected.

Recent correspondence to representatives from Microsoft stated that it did inform several antivirus makers about the flaws a number of weeks before the public reveal.

Jake Williams, a former employee of the National Security Agency and current president of Rendition Infosec LLC, told the Wall Street Journal that the Spectre and Meltdown vulnerabilities would have been of great interest to any intelligence organization.

Williams also warned that it is a “near certainty” that the Chinese government was aware of Spectre and Meltdown before the U.S., given that the Communist Party closely monitors such communications.

Representatives from the Chinese government did not comment on this story. In the past, however, the country’s foreign ministry has said that it is “resolutely opposed” to all forms of hacking.

Updated on February 23: Updated information on Intel revelations.

Eric Brackett
Former Digital Trends Contributor
MelGeek MADE84 Ultra Review: Getting addicted to this magnetic keyboard was only a matter of time
I tried my first Hall Effect keyboard, and now my brown switches are just gathering dust
Computer, Computer Hardware, Computer Keyboard

Mechanical keyboards are one of those rabbit holes I’ve always been happy to fall into. I spend most of my day writing, then somehow end up using the same keyboard for several more hours once I start gaming. Naturally, how a keyboard responds and sounds are important to me. But more often than not, I found myself relying on this dusty old mechanical keyboard with brown switches. Something about the brown switches and construction always made it feel natural to me. All of this changed after I tried the MelGeek MADE84 Ultra V2 for a review.

This keyboard instantly caught my attention with its transparent keycaps, massive light bar, aluminum body, and lighting running around almost every side, which immediately gives it away as a gaming keyboard. It's not being subtle about it at all. After about two weeks of using it for work and games, the styling is just one of the things it has going for it.

Read more
AI agents are already breaking the rules in cyber tests. OpenAI’s answer is a more capable one
GPT-5.6-Cyber trades some safeguards for stronger defensive capabilities, but access is tightly restricted
A dark mystery hand typing on a laptop computer at night.

OpenAI has built a cybersecurity model specifically for advanced requests that its standard models often refuse. GPT-5.6-Cyber is available through the restricted Daybreak Red program and is meant for work such as exploit development and advanced security research.

The capability jump is hard to miss. OpenAI says GPT-5.6-Cyber completes 95% of requests in its internal Advanced Cybersecurity Completion Rate evaluation. Regular GPT-5.6 Sol completed just 1.5%. That leap comes after several cyber evaluations showed AI agents wandering beyond the boundaries researchers had set for them.

Read more
Meta’s new AI model runs entirely offline, but your GPU needs to keep up
Meta drops a free 30 billion parameter AI model that lives entirely on your desktop.
meta-logo

Meta has a new AI model out, and for once, the biggest headline isn't about capability; it's about freedom. Muse Glimmer, sitting around 30 billion parameters, ships with an Apache 2.0 license, meaning the weights on Hugging Face are yours to download, modify, and build on top of, no permission needed. You can simply run it on a graphics card on your local machine, no server farm or online connectivity required. 

Meta's Superintelligence Lab took its larger Muse Spark and essentially had it teach a smaller, leaner version to think as it does. Muse Glimmer accepts both text and image inputs, though it only answers in text. It supports over 100 languages, remembers conversations stretching past 131,000 tokens, and its knowledge stops at January 4, 2026.

Read more