←back to thread

658 points transpute | 1 comments | | HN request time: 0s | source
Show context
codedokode ◴[] No.35844123[source]
Isn't it good? Does leaked key mean that now owners of hardware will be able to read and modify the firmware, including IME, and check it for backdoors?

Such keys should be in the hands of users, not Intel.

replies(5): >>35844144 #>>35844419 #>>35844928 #>>35845513 #>>35845801 #
tapoxi ◴[] No.35844419[source]
Realistically it means a lot more people are going to cheat in Valorant.
replies(2): >>35844572 #>>35844631 #
shrimp_emoji ◴[] No.35844631[source]
Oh no! Here, please, backdoor my OS with a kernel anticheat -- anything that saves me from cheaters in the current bideo game of the month! D:
replies(4): >>35844767 #>>35844891 #>>35844904 #>>35845450 #
CircleSpokes ◴[] No.35844904[source]
I honestly don't understand why people act like this. Wanting to be able to ensure firmware isn't maliciously modified is a good thing. Open firmware is also a good idea obviously but there has to be a way to ensure firmware is signed either by OEM or your own keys like secure boot.

As for games, lots of people play games and want good anticheat. If you don't like that you don't have to play those games but no need to act like the way you are because other people want decent anticheat.

replies(5): >>35845630 #>>35845936 #>>35845943 #>>35846925 #>>35847251 #
1. makeitdouble ◴[] No.35847251[source]
> Wanting to be able to ensure firmware isn't maliciously modified is a good thing.

I'm not sure it's a good thing at its core. The intent seems legit on the surface, but digging into the implementation you'll always end up having an adversarial relation with your user's security and device ownership.

On games, I kinda see this as an argument for preserving a special status for consoles, where the maker keep a right to secure everything to insane levels. Doing the same on general purpose computing platform isn't acceptable. Banking and digital currencies are morr of a blurry line, but games definitely shouldn't be accessing the utter most secure system of the platform.

If anything, opening the door to a whole community to hack the base security of your computing life when litteral life and death applications also rely on those shouldn't be allowed.