Jump to content

Intel's new CPUs are vulnerable to USB hacks

cozz

Positive Technologies, a security vendor has discovered that some of Intel's new CPUs have a debugging interface that can be accessed through USB 3.0 ports. This provides the hacker full control over the PC. Worse yet, it is completely undetectable by current security tools.

 

TweakTown's Anthony Garreffa stated "The possibilities of this are virtually unlimited, as someone could plug a USB 3.0 stick in and upload malicious code, keyloggers, and virtually anything else they wanted"

 

55828_13_intels-new-cpus-flawed-full-system-control-over-usb.jpg

 

Maxim Goryachy at the 33rd Chaos Communication Congress in Hamburg Germany said: "We have reported this case to Intel, As of today this mechanism can be exploited only on Intel U-series processors. As of today, no publicly available security system will detect it."

 

 

 

 

Source; TweakTown
 

 

 

Link to comment
Share on other sites

Link to post
Share on other sites

If its done through usb ports, surely the hacker would have to be at the computer then? So this wouldn't be a worry for most people at home, or companies.

PC - CPU Ryzen 5 1600 - GPU Power Color Radeon 5700XT- Motherboard Gigabyte GA-AB350 Gaming - RAM 16GB Corsair Vengeance RGB - Storage 525GB Crucial MX300 SSD + 120GB Kingston SSD   PSU Corsair CX750M - Cooling Stock - Case White NZXT S340

 

Peripherals - Mouse Logitech G502 Wireless - Keyboard Logitech G915 TKL  Headset Razer Kraken Pro V2's - Displays 2x Acer 24" GF246(1080p, 75hz, Freesync) Steering Wheel & Pedals Logitech G29 & Shifter

 

         

Link to comment
Share on other sites

Link to post
Share on other sites

U-series CPUs, aren't those laptops? If so that makes this even worse.

Current LTT F@H Rank: 90    Score: 2,503,680,659    Stats

Yes, I have 9 monitors.

My main PC (Hybrid Windows 10/Arch Linux):

OS: Arch Linux w/ XFCE DE (VFIO-Patched Kernel) as host OS, windows 10 as guest

CPU: Ryzen 9 3900X w/PBO on (6c 12t for host, 6c 12t for guest)

Cooler: Noctua NH-D15

Mobo: Asus X470-F Gaming

RAM: 32GB G-Skill Ripjaws V @ 3200MHz (12GB for host, 20GB for guest)

GPU: Guest: EVGA RTX 3070 FTW3 ULTRA Host: 2x Radeon HD 8470

PSU: EVGA G2 650W

SSDs: Guest: Samsung 850 evo 120 GB, Samsung 860 evo 1TB Host: Samsung 970 evo 500GB NVME

HDD: Guest: WD Caviar Blue 1 TB

Case: Fractal Design Define R5 Black w/ Tempered Glass Side Panel Upgrade

Other: White LED strip to illuminate the interior. Extra fractal intake fan for positive pressure.

 

unRAID server (Plex, Windows 10 VM, NAS, Duplicati, game servers):

OS: unRAID 6.11.2

CPU: Ryzen R7 2700x @ Stock

Cooler: Noctua NH-U9S

Mobo: Asus Prime X470-Pro

RAM: 16GB G-Skill Ripjaws V + 16GB Hyperx Fury Black @ stock

GPU: EVGA GTX 1080 FTW2

PSU: EVGA G3 850W

SSD: Samsung 970 evo NVME 250GB, Samsung 860 evo SATA 1TB 

HDDs: 4x HGST Dekstar NAS 4TB @ 7200RPM (3 data, 1 parity)

Case: Sillverstone GD08B

Other: Added 3x Noctua NF-F12 intake, 2x Noctua NF-A8 exhaust, Inatek 5 port USB 3.0 expansion card with usb 3.0 front panel header

Details: 12GB ram, GTX 1080, USB card passed through to windows 10 VM. VM's OS drive is the SATA SSD. Rest of resources are for Plex, Duplicati, Spaghettidetective, Nextcloud, and game servers.

Link to comment
Share on other sites

Link to post
Share on other sites

2 minutes ago, sazrocks said:

U-series CPUs, aren't those laptops? If so that makes this even worse.

indeed they are

My life

Link to comment
Share on other sites

Link to post
Share on other sites

2 minutes ago, RKRiley said:

If its done through usb ports, surely the hacker would have to be at the computer then? So this wouldn't be a worry for most people at home, or companies.

Yes, and no, it's still a MAJOR flaw, in the article they also state that it's U-series CPU's, which are the ones found in laptops and small factor PC's like NUCs, which people usually take around with them.

Link to comment
Share on other sites

Link to post
Share on other sites

So... Same sh#t, different day...

Cor Caeruleus Reborn v6

Spoiler

CPU: Intel - Core i7-8700K

CPU Cooler: be quiet! - PURE ROCK 
Thermal Compound: Arctic Silver - 5 High-Density Polysynthetic Silver 3.5g Thermal Paste 
Motherboard: ASRock Z370 Extreme4
Memory: G.Skill TridentZ RGB 2x8GB 3200/14
Storage: Samsung - 850 EVO-Series 500GB 2.5" Solid State Drive 
Storage: Samsung - 960 EVO 500GB M.2-2280 Solid State Drive
Storage: Western Digital - Blue 2TB 3.5" 5400RPM Internal Hard Drive
Storage: Western Digital - BLACK SERIES 3TB 3.5" 7200RPM Internal Hard Drive
Video Card: EVGA - 970 SSC ACX (1080 is in RMA)
Case: Fractal Design - Define R5 w/Window (Black) ATX Mid Tower Case
Power Supply: EVGA - SuperNOVA P2 750W with CableMod blue/black Pro Series
Optical Drive: LG - WH16NS40 Blu-Ray/DVD/CD Writer 
Operating System: Microsoft - Windows 10 Pro OEM 64-bit and Linux Mint Serena
Keyboard: Logitech - G910 Orion Spectrum RGB Wired Gaming Keyboard
Mouse: Logitech - G502 Wired Optical Mouse
Headphones: Logitech - G430 7.1 Channel  Headset
Speakers: Logitech - Z506 155W 5.1ch Speakers

 

Link to comment
Share on other sites

Link to post
Share on other sites

Well shit, hopefully they come up with something soon... My laptop has an i5 7200u.

 

Guess I'll just have to keep any usb devices that are not my own out of it for now.

Specs: CPU - Intel i7 8700K @ 5GHz | GPU - Gigabyte GTX 970 G1 Gaming | Motherboard - ASUS Strix Z370-G WIFI AC | RAM - XPG Gammix DDR4-3000MHz 32GB (2x16GB) | Main Drive - Samsung 850 Evo 500GB M.2 | Other Drives - 7TB/3 Drives | CPU Cooler - Corsair H100i Pro | Case - Fractal Design Define C Mini TG | Power Supply - EVGA G3 850W

Link to comment
Share on other sites

Link to post
Share on other sites

1 minute ago, ARikozuM said:

So... Same sh#t, different day...

Idk about the same shit, show me another example of CPU's having an open back door with the key being in the lock ready to open whenever.

Link to comment
Share on other sites

Link to post
Share on other sites

I'm curious about this considering the USB 3.0 ports go through the PCH, not the processor directly.

 

Either way, spin a new revision of the CPU or chipset, have the manufacturers issue recalls or UEFI updates if it can be fixed in microcode, and call it a day.

Link to comment
Share on other sites

Link to post
Share on other sites

Wasn't kabylake supposed to increase security?

 

Seriously, how are they going to fix this? I'm assuming at the minimum a bios update, and at worst its in the hardware and thus impossible to turn off.

Current LTT F@H Rank: 90    Score: 2,503,680,659    Stats

Yes, I have 9 monitors.

My main PC (Hybrid Windows 10/Arch Linux):

OS: Arch Linux w/ XFCE DE (VFIO-Patched Kernel) as host OS, windows 10 as guest

CPU: Ryzen 9 3900X w/PBO on (6c 12t for host, 6c 12t for guest)

Cooler: Noctua NH-D15

Mobo: Asus X470-F Gaming

RAM: 32GB G-Skill Ripjaws V @ 3200MHz (12GB for host, 20GB for guest)

GPU: Guest: EVGA RTX 3070 FTW3 ULTRA Host: 2x Radeon HD 8470

PSU: EVGA G2 650W

SSDs: Guest: Samsung 850 evo 120 GB, Samsung 860 evo 1TB Host: Samsung 970 evo 500GB NVME

HDD: Guest: WD Caviar Blue 1 TB

Case: Fractal Design Define R5 Black w/ Tempered Glass Side Panel Upgrade

Other: White LED strip to illuminate the interior. Extra fractal intake fan for positive pressure.

 

unRAID server (Plex, Windows 10 VM, NAS, Duplicati, game servers):

OS: unRAID 6.11.2

CPU: Ryzen R7 2700x @ Stock

Cooler: Noctua NH-U9S

Mobo: Asus Prime X470-Pro

RAM: 16GB G-Skill Ripjaws V + 16GB Hyperx Fury Black @ stock

GPU: EVGA GTX 1080 FTW2

PSU: EVGA G3 850W

SSD: Samsung 970 evo NVME 250GB, Samsung 860 evo SATA 1TB 

HDDs: 4x HGST Dekstar NAS 4TB @ 7200RPM (3 data, 1 parity)

Case: Sillverstone GD08B

Other: Added 3x Noctua NF-F12 intake, 2x Noctua NF-A8 exhaust, Inatek 5 port USB 3.0 expansion card with usb 3.0 front panel header

Details: 12GB ram, GTX 1080, USB card passed through to windows 10 VM. VM's OS drive is the SATA SSD. Rest of resources are for Plex, Duplicati, Spaghettidetective, Nextcloud, and game servers.

Link to comment
Share on other sites

Link to post
Share on other sites

1 minute ago, sazrocks said:

Seriously, how are they going to fix this? I'm assuming at the minimum a bios update, and at worst its in the hardware and thus impossible to turn off.

You spin a new revision of the chip. Intel has had hardware bugs in the past that were fixed this way.

Link to comment
Share on other sites

Link to post
Share on other sites

3 minutes ago, cozz said:

Idk about the same shit, show me another example of CPU's having an open back door with the key being in the lock ready to open whenever.

We can start with: http://danluu.com/cpu-backdoors/

Here's a post (http://www.realworldtech.com/forum/?threadid=35566&curpostid=35566) that suggests AMD's K7 and K8 had an issue with the microcode allowing someone to inject arbitrary code.

 

And then there's the whole conspiracy theory that Intel and AMD have backdoors in all CPUs courtesy of the NSA.

Link to comment
Share on other sites

Link to post
Share on other sites

1 minute ago, M.Yurizaki said:

We can start with: http://danluu.com/cpu-backdoors/

Here's a post (http://www.realworldtech.com/forum/?threadid=35566&curpostid=35566) that suggests AMD's K7 and K8 had an issue with the microcode allowing someone to inject arbitrary code.

 

And then there's the whole conspiracy theory that Intel and AMD have backdoors in all CPUs courtesy of the NSA.

You got me there

Link to comment
Share on other sites

Link to post
Share on other sites

6 minutes ago, cozz said:

Idk about the same shit, show me another example of CPU's having an open back door with the key being in the lock ready to open whenever.

Intel introduced a 3G chip (radio band) onto their CPU's in 2012 (?) allowing IT to remotely diagnose PC's even when wireless.

Cor Caeruleus Reborn v6

Spoiler

CPU: Intel - Core i7-8700K

CPU Cooler: be quiet! - PURE ROCK 
Thermal Compound: Arctic Silver - 5 High-Density Polysynthetic Silver 3.5g Thermal Paste 
Motherboard: ASRock Z370 Extreme4
Memory: G.Skill TridentZ RGB 2x8GB 3200/14
Storage: Samsung - 850 EVO-Series 500GB 2.5" Solid State Drive 
Storage: Samsung - 960 EVO 500GB M.2-2280 Solid State Drive
Storage: Western Digital - Blue 2TB 3.5" 5400RPM Internal Hard Drive
Storage: Western Digital - BLACK SERIES 3TB 3.5" 7200RPM Internal Hard Drive
Video Card: EVGA - 970 SSC ACX (1080 is in RMA)
Case: Fractal Design - Define R5 w/Window (Black) ATX Mid Tower Case
Power Supply: EVGA - SuperNOVA P2 750W with CableMod blue/black Pro Series
Optical Drive: LG - WH16NS40 Blu-Ray/DVD/CD Writer 
Operating System: Microsoft - Windows 10 Pro OEM 64-bit and Linux Mint Serena
Keyboard: Logitech - G910 Orion Spectrum RGB Wired Gaming Keyboard
Mouse: Logitech - G502 Wired Optical Mouse
Headphones: Logitech - G430 7.1 Channel  Headset
Speakers: Logitech - Z506 155W 5.1ch Speakers

 

Link to comment
Share on other sites

Link to post
Share on other sites

Just now, wcreek said:

Does it affect Kaby Lake running on Z170.

Yup

http://pcpartpicker.com/list/Mf3Zcc My build

 

R.I.P Donny- Got banned. We will always remember your spamming of "Cancerbooks"

 

iPhones are like 1 ply toliet paper with a logo slapped on them and years old hardware in them- A Wise Man

Link to comment
Share on other sites

Link to post
Share on other sites

1 minute ago, ARikozuM said:

Intel introduced a 3G chip (radio band) onto their CPU's in 2012 (?) allowing IT to remotely diagnose PC's even when wireless.

Didn't know about that, that's concerning..

Link to comment
Share on other sites

Link to post
Share on other sites

1 minute ago, ARikozuM said:

Intel introduced a 3G chip (radio band) onto their CPU's in 2012 (?) allowing IT to remotely diagnose PC's even when wireless.

Illuminati is confirm

a Moo Floof connoisseur and curator.

:x@handymanshandle x @pinksnowbirdie || Jake x Brendan :x
Youtube Audio Normalization
 

 

 

Link to comment
Share on other sites

Link to post
Share on other sites

Just now, cozz said:

Didn't know about that, that's concerning..

It isn't. This is merely reinforcing the fact that you need to practice safe techs.

Cor Caeruleus Reborn v6

Spoiler

CPU: Intel - Core i7-8700K

CPU Cooler: be quiet! - PURE ROCK 
Thermal Compound: Arctic Silver - 5 High-Density Polysynthetic Silver 3.5g Thermal Paste 
Motherboard: ASRock Z370 Extreme4
Memory: G.Skill TridentZ RGB 2x8GB 3200/14
Storage: Samsung - 850 EVO-Series 500GB 2.5" Solid State Drive 
Storage: Samsung - 960 EVO 500GB M.2-2280 Solid State Drive
Storage: Western Digital - Blue 2TB 3.5" 5400RPM Internal Hard Drive
Storage: Western Digital - BLACK SERIES 3TB 3.5" 7200RPM Internal Hard Drive
Video Card: EVGA - 970 SSC ACX (1080 is in RMA)
Case: Fractal Design - Define R5 w/Window (Black) ATX Mid Tower Case
Power Supply: EVGA - SuperNOVA P2 750W with CableMod blue/black Pro Series
Optical Drive: LG - WH16NS40 Blu-Ray/DVD/CD Writer 
Operating System: Microsoft - Windows 10 Pro OEM 64-bit and Linux Mint Serena
Keyboard: Logitech - G910 Orion Spectrum RGB Wired Gaming Keyboard
Mouse: Logitech - G502 Wired Optical Mouse
Headphones: Logitech - G430 7.1 Channel  Headset
Speakers: Logitech - Z506 155W 5.1ch Speakers

 

Link to comment
Share on other sites

Link to post
Share on other sites

1 minute ago, ARikozuM said:

It isn't. This is merely reinforcing the fact that you need to practice safe techs.

I was just talking to my boss about this news and he's said the 3G chip was meh, the real thing you need to look out for is vPro, intels own hidden backdoor to your CPU.

 

How did i not know about this stuff haha

Link to comment
Share on other sites

Link to post
Share on other sites

Just now, ♠FlamieMeister♠ said:

Yup

Well. Interesting. I'm still planning on running a Kaby Lake CPU on my Z170 board. Honestly I should've gotten a Z270 mobo but I liked the way it looked and when I ordered it, I was thinking about a 6700K. Really there's not much difference but it'd be cool to have a CPU OC to 5.2GHz on a Kraken X52.

a Moo Floof connoisseur and curator.

:x@handymanshandle x @pinksnowbirdie || Jake x Brendan :x
Youtube Audio Normalization
 

 

 

Link to comment
Share on other sites

Link to post
Share on other sites

In all honesty, while this is scary, the layman need not be concerned because:

  • You're not a valuable target
  • Someone needs to have physical access to your computer
  • If your OS is smart enough, it won't autorun stuff from removable drives unless they're using some other attack surface.
Link to comment
Share on other sites

Link to post
Share on other sites

16 minutes ago, RKRiley said:

If its done through usb ports, surely the hacker would have to be at the computer then? So this wouldn't be a worry for most people at home, or companies.

Perhaps a USB drive could be infected without the user knowing it. Though I'm not sure how remote the hacker can actually be or if they can rely on other means to get access without being physically present.

a Moo Floof connoisseur and curator.

:x@handymanshandle x @pinksnowbirdie || Jake x Brendan :x
Youtube Audio Normalization
 

 

 

Link to comment
Share on other sites

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×