Skip to main content

Intel AMT firmware suffers security flaw even when machines are off

8th gen intel core launch
Image used with permission by copyright holder
Another security vulnerability has been revealed that poses a significant risk for a number of PCs running Intel chipsets or processors. This one’s a bit different — and potentially more dangerous — than many other vulnerabilities in that it targets business-class systems in particular. It can also affect machines that aren’t even running.

The flaw, which exists in certain Intel chipset firmware versions utilized by some systems with vPro processors, affects the Active Management Technology, or AMT, feature. AMT lets administrators manage machines via remote connections, and the vulnerability allows attackers to bypass authentication and utilize the same capabilities, Ars Technica reports.

AMT is a part of the remote access features of some systems that allow remote access to a machine even when it’s shut down. As long as such a machine has power, it can by design be accessed with all the intended remote capabilities enabled.

Intel designed AMT to demand a password before allowing remote access via web browser. Unfortunately, the flaw allows attackers to bypass the AMT system’s usual authentication requirement. Tenable Network Security, which has created what it characterizes as the first Intel AMT vulnerability detection capability, describes the flaw as follows:

” … we reduced the response hash to one hex digit and authentication still worked. Continuing to dig, we used a NULL/empty response hash (response=”” in the HTTP Authorization header). Authentication still worked. We had discovered a complete bypass of the authentication scheme.”

As Ars Technica points out, the issue is made even worse by the AMT feature’s design, in which network traffic is passed through the Intel Management Engine and to the AMT, bypassing the operating system. That means that there’s no record of unauthorized access.

Intel indicated in a blog post that PC manufacturers should be releasing patches for affected systems within the week. It also posts a tool to locate and diagnose vulnerable systems. Fujitsu, HP, and Lenovo have provided information on their own affected systems. So far, the Shodan security search engine has located more than 8,500 machines that are vulnerable to attack.

Updated on 5-10-2017 by Mark Coppock: Clarified that the flaw exists in certain chipset firmware and not inherent in Intel vPro processors and removed the incorrect reference to any empty text field being able to bypass AMT authentication.

Editors' Recommendations

Mark Coppock
Mark has been a geek since MS-DOS gave way to Windows and the PalmPilot was a thing. He’s translated his love for…
iMac deals: New, renewed and refurbished iMac computers
Apple iMac with Retina 5K Display review close

If you're in the Apple ecosystem and need a desktop computer rather than something like a MacBook, then you'll want to go for the Apple iMac, which is one of the best all-in-one computers on the market. There are quite a few screen sizes and specs to pick from, and if you're willing to go for a renewed option, you can get some older, yes still powerful, iMacs for a great price. Even if you aren't, there are still some great Apple deals you can take advantage of to save yourself some money, which is why we went out and scoured the internet for the best deals we could find.
Apple 21.5-inch iMac (2018) Renewed -- $409, was $460

Even cheaper than any of the MacBook deals going on, this Apple 21.5-inch iMac (2018) might be a few years old but it offers plenty of juice for the price. That's the beauty behind many iMacs -- they last a long time thanks to offering reliable hardware and the benefits of MacOS, which tends to mean they stay fast for awhile. In the case of the 2018 21.5-inch iMac, you get a 2.7GHz Quad-Core Intel Core i5 processor paired up with 16GB of memory which is a great set of specs for ensuring you can get plenty of work done.

Read more
How to transfer photos from an iPhone to a computer
The Apple iPhone 15 Plus's gallery app.

As the old saying goes, the best camera is the one you always have with you. If you're like most iPhone users, that means you've likely amassed a sizeable collection of photos on your device. However, while Apple's Photos app is a great way to manage and view your photo library, it's never a good idea to keep all your eggs in one basket. After all, suffering a lost or broken iPhone is painful enough without also losing all your precious digital memories in the process.

Even if you're backing up your iPhone to iCloud or your computer, it's a good idea to keep your photos backed up separately. After all, opening a folder or a photo management app is a much easier way to get at your photos than trying to extract them from an iCloud or iTunes/Finder backup, which requires either restoring them to another iPhone or relying on special software tools.

Read more
Get up to $900 off the Dell XPS 15 and Dell XPS 17 today
A Dell XPS 15 laptop on an office desk next to a monitor.

It’s all change at Dell this year with the Dell XPS 16 replacing the Dell XPS 17 and the Dell XPS 15 gradually seeing fewer updates. That means if you’re still keen to snag a Dell XPS 15 or 17, your chance to do so is running out. That’s why it’s great to see some excellent laptop deals for both models with up to $900 to be saved at the moment. If you’re looking for a new laptop, read on while we guide you through what each laptop has to offer.
Dell XPS 17 -- $1,949, was $2,849

The Dell XPS 17 remains a good option for anyone seeking a powerful laptop that works well as a desktop replacement. It has a 13th-generation Intel Core i7-13700H processor with a massive 32GB of memory so it’s ideal for all kinds of productivity-based tasks such as if you need to manage many spreadsheets at once or if you just prefer to have a lot of windows open at once. It also has 1TB of SSD storage while it can handle plenty of gaming too thanks to its Nvidia GeForce RTX 4070 graphics card. Its display is a 17-inch full HD+ model with 1920 x 1200 resolution, anti-glare properties, and 500 nits of brightness so it looks great. Other quality of life improvements include plenty of USB-C ports, up to 14 hours of battery life, a great cooling system, and a form factor that means it squeezes a 17-inch display into a 15-inch form size. It also has a large edge-to-edge backlit keyboard, comfortable touchpad, and large keycaps so it feels good to work on as you’d expect from the makers of some of the best laptops.

Read more