The new vulnerability on Intel allows hackers to take control of your computer within 30 seconds
While Intel's Meltdown and Specter vulnerabilities have not been completely overcome, the world faces a new security vulnerability that allows hackers to take complete control of the user's device and attack time within 30 seconds.
Recently, security firm F-Secure, has discovered a new security breach in Intel's remote management technology, Active Management Technology (ATM), which allows hackers to bypass the login screen and security mode.
To improve the administrator's ability to manage and repair computers, workstations and remote servers, Intel chips use a technology called Intel Active Management Technology (AMT). Administrators can access the remote system using a control panel in the form of a Website accessible via port 16992 and 16993. Intel AMT web interface operates independently of the operating system, so the device only needs the device. There is still a power connection and the network connection is still running even if the system is off.
With this vulnerability, any security measure, no matter how strong, can be overcome by hackers. Hackers only need to access the BIOS of the device, change the option to choose Management Engine BIOS Extension (MEBx) and enter "admin" as the password. At that time, all security features will be turned off and only need 30 seconds and some simple actions the hacker can attack the victim's device without spending any code.
This is not the first time security experts have discovered vulnerabilities in AMT. Intel has been notified of this vulnerability, and in order to protect the device before receiving a fix, you should not leave the computer for too long without supervision, but also need to set a password for security technology. AMT in BIOS.
See more:
- How to know if your Windows computer is affected by Meltdown and Specter?
- Intel: After installing Specter / Meltdown vulnerability patch your computer will slow down to 10%
- Intel released Microcode for CPU Linux to fix Meltdown and Specter
You should read it
- Foreshadow - the fifth most serious security hole in the CPU in 2018
- AMD and ARM both warned of security flaws like Intel processors
- Intel continues to have a Plundervolt security vulnerability that reduces CPU voltage
- Intel's chip has eight new serious vulnerabilities
- Intel will stop releasing patches for the Specter v2 security hole on some older CPUs
- Detected a serious BIOS vulnerability, affecting many Intel processors
- Microsoft, Intel issue urgent warnings about MMIO Stale Data vulnerability on Windows 11, 10
- Intel has overcome serious vulnerabilities in graphics drivers for Windows
May be interested
- What is VENOM Vulnerability? How can you protect yourself?the venom vulnerability affects all major cpu vendors, including intel, amd, and arm. venom allows malicious actors to read the contents of a computer's memory and potentially execute code remotely.
- Update Teamviewer now if you don't want to be hackedteamviewer has released an emergency patch that allows hackers to take control of the computer when they are in the remote control session.
- Microsoft urges Admin to patch PowerShell vulnerability on Windowsmicrosoft has just asked for it admins of organizations and businesses to immediately patch the vulnerability in powershell 7. the reason is that this vulnerability allows hackers to bypass windows defender application control (wdac) enforcement measures.
- Windows 10 vulnerability from Cortana helps hackers open unauthorized malicious websites and how to fix themby default, cortana will always listen to users' requests, even if the lock screen on windows 10, this is the hole that gives hackers the opportunity to manipulate the device and install malicious code. in computer.
- Vulnerability warnings help hackers take down Telegram users' computersthrough the vulnerability in telegram, hackers will be able to carry out attacks to take control of users' computers.
- Immediately patch CWP vulnerability that allows code execution as root on Linux serverssecurity researchers have discovered two new vulnerabilities affecting control web panel (cwp) software. hackers could chain these two vulnerabilities to gain remote code execution (rce) privileges as root on vulnerable linux servers.
- Intel: After installing Specter / Meltdown vulnerability patch your computer will slow down to 10%after evaluating performance changes in 6th, 7th and 8th generation intel-powered computers running windows 10, intel has concluded that your computer will be slow from 6 to 10 % after installing specter / meltdown fix.
- New vulnerability on MediaTek chip makes 30% of Android smartphones can be eavesdroppedmediatek has just had to immediately release patches for vulnerabilities that allow hackers to eavesdrop on android users' calls. even hackers can exploit the vulnerability to run commands or privilege escalation attacks.
- Acer, Dell, Fujitsu, HP, Lenovo, Panasonic are affected by Intel's security flawsacer, dell, fujitsu, hp, lenovo and panasonic have officially confirmed that the products that these companies combine with intel chipsets are affected by 8 security holes, allowing hackers to easily penetrate the device. .
- Intel hd graphics control panel lost - Not difficult to findis software to adjust parameters such as resolution, color, scanning frequency on the computer... when unfortunately the intel hd graphics control panel is lost, you can refer to a few solutions in the following article.