Remix.run Logo
high_na_euv 4 hours ago

How?

immibis 3 hours ago | parent [-]

Secure boot etc. It's in every ARM device, including the management engines in x64 devices (which are ARM devices).

high_na_euv 2 hours ago | parent [-]

Oh, I see.

Fortunely there is still x86

amelius 2 hours ago | parent | next [-]

There is https://en.wikipedia.org/wiki/Intel_Management_Engine

Anyway, it will be maybe a few years until the governments will get the idea of enforcing their own management engines into our hardware :/

LargoLasskhyfv 2 hours ago | parent | prev [-]

> Oh, I see.

No, you don't.

Because of the SMI/ACPI/Intel Management Engine/AMD Secure Technology/UEFI, and optionally AMT-complex, where usually only parts of can be deactivated partially, but never all of it.

It's actually more bad than the above mentioned ARM-stuff, which is misinformed(maybe because of raspberry piish broadcomisms, or locked down dumbphones), because on ARM, you either can disable that stuff, or even can run your own instead.

https://www.trustedfirmware.org/projects/op-tee/

https://github.com/OP-TEE

https://docs.kernel.org/next/tee/op-tee.html