Breaking News

COLORFUL Launches iGame Guard G114 140W GaN Multi-Port Charger INNO3D TOWER WORKSTATION AWS-511Z-R1 Thermal Grizzly and Noctua introduce WireView Pro II Noctua Edition GPU monitoring device Nikon releases the Z5IIC full-frame mirrorless camera Announcing the New ASUS Googlebook 14

logo

  • Share Us
    • Facebook
    • Twitter
  • Home
  • Home
  • News
  • Reviews
  • Essays
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed

Search form

Researchers Expose Undocumented Security Problem Inside Intel's Chips

Researchers Expose Undocumented Security Problem Inside Intel's Chips

PC components Mar 29,2019 0

Security researchers from Positive Technologies revealed this week at Black Hat Asia in Singapore how an undocumented technology inside Intel microchips might be activated by attackers.

Maxim Goryachy and Mark Ermolov spoke about the hidden technology during their presentation 'Intel VISA: Through the Rabbit Hole.'

They found that modern Platform Controller Hub (PCH) and CPU contains the Visualization of Internal Signals Architecture (VISA,) a full-fledged logic signal analyzer, which allows monitoring the state of internal lines and buses in real time—a gold mine for researchers.

The researchers took advantage of a previously discovered vulnerability (INTEL-SA-00086) to study the VISA technology, which they believe it is used for manufacturing line verification of chips.

Featuring an enormous number of settings, VISA allows for the creating of custom rules for capturing and analyzing signals. It enables data from memory to be read, and signals from peripherals to be interrupted. Its purpose appears to be that of detecting flaws in processors and microchips. Although hidden and being disabled by default on all commercial systems, the researchers say that VISA can be easily be activated by threat actors.

"An attacker might be able to use the fact that VISA enables the creation of custom rules to capture and analyze signals to create further rules that can capture sensitive data, " they said.

They used publicly available methods to access the might of this technology without any hardware modifications on publicly available motherboards.

The researchers were able to read signals from internal buses and other internal PCH devices; unauthorized access to these devices then allowed for the intercepting of data from the computer memory. They did this using a previously disclosed vulnerability in the Intel Management Engine subsystem that also exists in the PCH microchip. This flaw, the researchers say, enables hackers to attack by injecting spyware in the subsystem code.

Intel claims that the disclosed vulnerability mentioned was mitigated in 2017, adding that systems using the latest firmware are protected from known vectors. However, the researchers claim that Intel's fix isn't enough as the firmware could still be downgraded to enable attackers to enable VISA.

However, in order to get at the VISA functionality an attacker needs that Intel Management Interface exposed, which is generally not the case in most systems.

Tags: ProcessorsSecurityIntel
Previous Post
Toyota Suffered New Security Breach
Next Post
Volkswagen, Siemens to Collaborate on Industrial Cloud Tech

Related Posts

  • Akasa Launches Newton N16, Compact Fanless Case for ASUS NUC 16 Pro

  • Intel Gamer Days 2026 Kicking Off with AAA Gaming Bundle - Partnerships

  • Intel Arc G-Series Processors Set a New Standard for Handheld PC Gaming

  • Intel at Computex 2026

  • Intel Launches Intel Core Series 3 Processors

  • ASRock Unveils Intel Arc Pro B70 Graphics Cards, Redefining Professional Workspaces

  • G.SKILL DDR5 Memory Kits Confirmed as Intel XMP 3.0 'Ready' for Intel Core Ultra 200S Plus Series Processors

  • Intel Launches New Core Ultra 200HX Plus Series Mobile Processors

Latest News

COLORFUL Launches iGame Guard G114 140W GaN Multi-Port Charger
Smartphones

COLORFUL Launches iGame Guard G114 140W GaN Multi-Port Charger

INNO3D TOWER WORKSTATION AWS-511Z-R1
Enterprise & IT

INNO3D TOWER WORKSTATION AWS-511Z-R1

Thermal Grizzly and Noctua introduce WireView Pro II Noctua Edition GPU monitoring device
GPUs

Thermal Grizzly and Noctua introduce WireView Pro II Noctua Edition GPU monitoring device

Nikon releases the Z5IIC full-frame mirrorless camera
Cameras

Nikon releases the Z5IIC full-frame mirrorless camera

Announcing the New ASUS Googlebook 14
Enterprise & IT

Announcing the New ASUS Googlebook 14

Popular Reviews

Endorfy Thock V2 Wireless Keyboard

Endorfy Thock V2 Wireless Keyboard

The Quiet Technology Behind the Spin

The Quiet Technology Behind the Spin

SoundPeats Cove Pro

SoundPeats Cove Pro

Akaso Brave 8 Lite

Akaso Brave 8 Lite

Kioxia Exceria Plus G3 512GB microSD

Kioxia Exceria Plus G3 512GB microSD

SoundPeats C30

SoundPeats C30

be quiet! Dark Perk Mice

be quiet! Dark Perk Mice

XbotGo Chamaleon

XbotGo Chamaleon

Main menu

  • Home
  • News
  • Reviews
  • Essays
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
  • About
  • Privacy
  • Contact Us
  • Promotional Opportunities @ CdrInfo.com
  • Advertise on out site
  • Submit your News to our site
  • RSS Feed