meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Tuesday, November 21st 2017

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

News, Tech News

4.9754 Ratings

🗓️ 21 November 2017

⏱️ 6 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. Intel ME Update; Fuzzing x86 CPUs; Android MediaProjection API Vulnerability

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Tuesday, November 21st, 2017 edition of the Sandinand Storm Center's Stormcast. My name is Johannes Ulrich,

0:09.2

and I'm recording from Jacksonville, Florida. Now, we have talked about Intel's

0:14.9

manageability engine in the past. Usually, researchers come up with vulnerabilities in this particular processor that's included in the past. Usually researchers come up with vulnerabilities in this particular processor

0:23.6

that's included in many of the newer Intel platforms. Now today Intel released a

0:31.6

bulletin with fixes for a number of different vulnerabilities that apparently were found in Intel's own internal testing.

0:41.3

Most of these vulnerabilities are privilege escalation vulnerabilities, but what this really means

0:46.5

when it comes to the active management technology AMT or the manageability engine, M.E,

0:54.5

is that an attacker that gained admin access on your system is now able to run code due to

1:02.8

these vulnerabilities using these active management technologies.

1:08.1

The result is that this code really runs outside the operating system. This is essentially

1:12.9

a separate small computer that's running next to the CPU. So your antivirus is pretty much

1:21.0

out of scope here. And also if you are rebuilding the system from scratch, you're likely not going to touch any code that the attacker stored in this subsystem.

1:33.6

Intel did release a tool.

1:35.3

It allows you to detect if you are vulnerable.

1:37.5

The tool applies to Windows and Linux.

1:41.1

Now, OS10 users.

1:43.2

As long as you are running on Apple's hardware, you should be fine because it doesn't

1:48.7

chip with the manageability engine.

1:52.7

Now Intel only released a detection tool, it did not release a patch for end users.

1:58.1

That's something the manufacturer of your motherboard, of your computer has to do. Lenovo,

2:03.7

for example, already released patches according to Intel. Haven't seen any patches from anybody else

2:09.7

so far. However, the link that Intel has on its side to Lenovo's version of the advisory currently

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.