I am fucking scared of the mass surveilence nightmare direction that the internet and the world as a whole is going towards… C2PA, france hacking itself into citizen phones, the UK anti encryption law, EU’s chat control, etc. Im also sick of and hate the “you will own nothing and be happy” mentality that corpos try to push. I dont wanna know how the world will look like in 5-10 years.

aaand there’s intel management engine and amd platform security procesor which undermine your foss efforts on most platforms

👁️👄👁️
cake
link
fedilink
71Y

Why do people want to be doomers over literally nothing. There’s so much good that you’re just ignoring.

Intel can read RAM directly and other parameters using their built in security systems on certain chips. Maybe do more research first to understand why that is distressing. There are some projects for open source CPUs on-going.

I’ve looked into this extensively but see zero actual real world effects other then being a boogyman to hardcore FOSS nerds

Idk what you’re talking about, it’s been done plenty of times?

Plus we dont even really know what new “Security” tech their cooking up nowadays. Especially with in-house chips like Apple M chips.

Meltdown Redux: Intel Flaw Lets Hackers Siphon Secrets from Millions of PCs

I feel like the management engine card is sneakily changing the threat model in the middle of the conversation.

Is it bad? Yes. Is it a big source of security holes? Absolutely.

Is it a way that Facebook is going to profile you to try and sell you to advertisers? Or a reason why you can’t ditch Windows? No.

What does ditching windows have to do with security chips? OS sits above the hardware so that does not make sense. Any linux distro is just as susceptible as it stands.

No ones worried about social media companies messing with your hardware (not yet). That’s off-topic. Besides, legally nothing stops Intel or AMD from just selling the harvested data to Fb or whoever so that point is kind of moot too.

Actually news just broke as I was writing this and guess what. Now there is a bug allowing browser exploitation of the CPU using… Javascript! What a time to be alive…

https://arstechnica.com/information-technology/2023/07/encryption-breaking-password-leaking-bug-in-many-amd-cpus-could-take-months-to-fix/

This is why we need RISC-V.

TWeaK
link
fedilink
31Y

Even phones have security chips in them these days.

Fun fact: Intel introduced the Management Engine right around the time they joined the NSA’s PRISM program.

AMD (for that matter, any other processor manufacturer) isn’t off the hook either - eg. see “Platform Security Processor”. https://en.wikipedia.org/wiki/AMD_Platform_Security_Processor

They’ve been locking processors to individual motherboards and eliminating second-hand resale value for “enterprise” hardware in the name of “security” too: https://www.servethehome.com/amd-psb-vendor-locks-epyc-cpus-for-enhanced-security-at-a-cost/

If that was our only problem and most people would be using FLOSS software I’d be happy. Intel ME is bad but you can have a “good enough” usage of tech today.

Create a post

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

  • Posting a link to a website containing tracking isn’t great, if contents of the website are behind a paywall maybe copy them into the post
  • Don’t promote proprietary software
  • Try to keep things on topic
  • If you have a question, please try searching for previous discussions, maybe it has already been answered
  • Reposts are fine, but should have at least a couple of weeks in between so that the post can reach a new audience
  • Be nice :)

Related communities

Chat rooms

much thanks to @gary_host_laptop for the logo design :)

  • 0 users online
  • 57 users / day
  • 383 users / week
  • 1.5K users / month
  • 5.7K users / 6 months
  • 1 subscriber
  • 2.44K Posts
  • 57.5K Comments
  • Modlog