MASSIVE 20GB LEAK FROM INTEL DOCUMENTS BACKDOORS IN ALL INTEL CPUS

Classified and confidential documents from U.S. chipmaker Intel, allegedly resulting from a breach, have been uploaded earlier today to a public file sharing service.

The cache of secret information is 20GB large and comes from an unknown source. It was announced as the first part in a series of Intel leaks.

According to Tillie Kottmann, a developer and reverse engineer who received the documents from an anonymous hacker, most of the information is supposed to be protected intellectual property. The developer was told that the information was stolen from Intel in a breach this year.

"They were given to me by an Anonymous Source who breached them earlier this year, more details about this will be published soon," Kottmann says.

“Most of the things here have NOT been published ANYWHERE before and are classified as confidential, under NDA or Intel Restricted Secret,” the developer added.

Those browsing firmware source code will find comments referring to backdoors, but that could mean anything and does not necessarily mean they can gain access to your computer:

An Intel spokesperson replying to our request for comments pointed us to the company’s product security policy page, which states that "Intel product development policy and practices prohibit any intentional steps to allow undocumented device access (e.g., “backdoors”), exposure of sensitive device information, or a bypass of security features or restrictions of its products."

Some of the files in the archive include technical specifications and relate to internal chipset design, including Kaby Lake platform and Intel Management Engine (ME).

This initial release contains documents related to the following:

  • Intel ME Bringup guides + (flash) tooling + samples for various platforms
  • Kabylake (Purley Platform) BIOS Reference Code and Sample Code + Initialization code (some of it as exported git repos with full history)
  • Intel CEFDK (Consumer Electronics Firmware Development Kit (Bootloader stuff)) SOURCES
  • Silicon / FSP source code packages for various platforms
  • Various Intel Development and Debugging Tools
  • Simics Simulation for Rocket Lake S and potentially other platforms
  • Various roadmaps and other documents
  • Binaries for Camera drivers Intel made for SpaceX
  • Schematics, Docs, Tools + Firmware for the unreleased Tiger Lake platform
  • (very horrible) Kabylake FDK training videos
  • Intel Trace Hub + decoder files for various Intel ME versions
  • Elkhart Lake Silicon Reference and Platform Sample Code
  • Some Verilog stuff for various Xeon Platforms, unsure what it is exactly
  • Debug BIOS/TXE builds for various Platforms
  • Bootguard SDK (encrypted zip)
  • Intel Snowridge / Snowfish Process Simulator ADK
  • Various schematics
  • Intel Marketing Material Templates (InDesign)

This release has already been dubbed “juicy” but Kottmann believes that future leaks from their source are likely to contain even “juicier” classified documents.

HOW IT ALLEGEDLY HAPPENED

Kottman is maintaining a repository with source code obtained by them and various sources hunting for misconfigured devops tools that allow access to resources. The repository contains data, proprietary code included, from dozens of companies (GE Appliances, Microsoft, Qualcomm, Motorola, AMD, Lenovo).

The developer does their best to remove sensitive information from the code they publish and complies with takedown requests. Even more, they are willing to provide details about the misconfiguration and how to avoid mishaps in the future.

The Intel breach appears to be no different. The hacker told Kottmann that they found an Intel server on a CDN that was not properly secured. This particular machine was seemingly selected based on details collected from an internet-wide scan.

Using a custom Python script, the hacker claims they were able to test for default username access and unsecured access to files and folders. According to the hacker, access to the folders was possible if you knew the right names. They needed to guess just one name, though. Once in, they could go back to the root directory and get access to any of them.

The chat above originally contained passwords for Intel documents that BleepingComputer intentionally removed.

However, the more important detail provided was the claim that they could impersonate any Intel employee with access to the resources, or create their own user. Some of the files are archives protected by an incredibly weak password.

In a statement to BleepingComputer, Intel said that the data appears to be from the Intel Resource and Design Center. A company representative did not speculate on the breach method but said that the leak may be from someone with access to the portal:

“We are investigating this situation. The information appears to come from the Intel Resource and Design Center, which hosts information for use by our customers, partners and other external parties who have registered for access. We believe an individual with access downloaded and shared this data” - Intel representative

Employees in this department have higher than normal privileges that give them access not just to resources for customers and OEMs but also to Intel’s intellectual property like documentation and tools, testing services, and pre-release product info, all available under a corporate non-disclosure agreement (CNDA).

This is a developing story...

SHARE THIS ARTICLE...

Israel IS Intel

Views: 51

Comment

You need to be a member of 12160 Social Network to add comments!

Join 12160 Social Network

"Destroying the New World Order"

TOP CONTENT THIS WEEK

THANK YOU FOR SUPPORTING THE SITE!

mobile page

12160.info/m

12160 Administrators

 

Latest Activity

cheeki kea commented on Burbia's video
Thumbnail

Soros Will Never Recover..Elon AIR The whole Thing

"Good find Burbia. It can only get worse. Is Soros too big to fail for he has his thumb in every pie…"
21 hours ago
Doc Vega posted blog posts
21 hours ago
Doc Vega commented on Doc Vega's blog post What's Meant to Be?
"tjdavis Thanks for your support Dude! "
yesterday
tjdavis posted photos
yesterday
tjdavis favorited Doc Vega's blog post What's Meant to Be?
yesterday
tjdavis posted a video

PORCUPINE TREE - BUYING NEW SOUL (HD)

Filmed at the Park West, Chicago, USA, 11-12 Oktober 2005
yesterday
Burbia commented on Burbia's video
Thumbnail

Meet GibberLink, Conversational AI's secret language

"One agent's audio range has a lower frequency than the other. Another example of different…"
yesterday
Burbia posted a video

Meet GibberLink, Conversational AI's secret language

Join Boris Starkov and Anton Pidkuiko, the developers behind GibberLink, for a fireside chat with Luke Harries from ElevenLabs.On February 24, Georgi Gergano...
yesterday
Doc Vega posted blog posts
Saturday
Doc Vega posted a blog post

Interpersonal Insanity

Interpersonal Insanity How do you expect me to read your mind?All those hidden things that I might…See More
Friday
cheeki kea replied to cheeki kea's discussion Tartaria
"Look at what we have to put up with. Leftist journalism in full swing. Everyone knows who created…"
Friday
Doc Vega posted a blog post

Why Did We Americans Become so Cynical? At Least Those Who Think

 Cynicism is a form of counter intelligence. It materializes when the general public has been…See More
Wednesday
tjdavis posted a video
Apr 16
Doc Vega posted blog posts
Apr 15
cheeki kea commented on Snakedaddy's album
Thumbnail

a soon shit

"lol at first I thought this was an acronym or phase meaning an urgent trip to the lavatory but alas…"
Apr 15
tjdavis posted a video

Europe will be an Islamic Muslim State

සිංහලෙන් කියවන්න http://sinhalabuddhist.comSlavery, Terrorism and Islam: The Historical Roots and Contemporary Threat.. Adapted from Dr. Peter Hammond's book...
Apr 14
Sandy posted a video

A conversation with Charlotte Iserbyt

“The Deliberate Dumbing Down of America — A Chronological Paper Trail”, will change forever the way you look at your child’s education. Written by whistleblo...
Apr 14
Doc Vega posted a blog post

Realizations

Used to think I had something special to bringThat I was seeing what others weren't seeingThe…See More
Apr 13
Burbia replied to cheeki kea's discussion Tartaria
"I forget some written language reads from right to left. The various calendars used up to now from…"
Apr 13
Less Prone favorited Burbia's blog post Mystery illness strikes Russia with fever, blood symptoms, and no cure in sight.
Apr 13

© 2025   Created by truth.   Powered by

Badges  |  Report an Issue  |  Terms of Service

content and site copyright 12160.info 2007-2019 - all rights reserved. unless otherwise noted