me_cleaner
ExpansionCards
Our great sponsors
me_cleaner | ExpansionCards | |
---|---|---|
97 | 1,136 | |
4,352 | 772 | |
- | 3.6% | |
0.0 | 4.6 | |
over 1 year ago | 4 months ago | |
Python | OpenSCAD | |
GNU General Public License v3.0 only | Creative Commons Attribution 4.0 |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
me_cleaner
-
Power issue with my X250. Time to upgrade? (more info in comments)
Some times Intel version of Lenovo have a problem with Intel ME , check this out. LINK
-
System76's Coreboot Open Firmware Manages to Disable Intel Me for Raptor Lake
Yes; there are several ways, depending heavily on the version, and ranging from most trustworthy to least trustworthy:
* By patching the ME firmware itself - see the me_cleaner project, and methods documented here: https://puri.sm/posts/deep-dive-into-intel-me-disablement/ . This is Pretty Reliable; the runtime code has been deleted from flash.
* By setting a bit in the flash configuration, assumed to be added for the US High Assurance program: https://github.com/corna/me_cleaner/wiki/HAP-AltMeDisable-bi... , https://www.ptsecurity.com/ww-en/analytics/disabling-intel-m... . This is Mostly Reliable; the mechanism has been fairly aggressively reverse engineered and was added for a program with strict requirements.
* By sending an HECI command that says "hey ME, turn off your runtime" https://review.coreboot.org/c/coreboot/+/52800 . This is Somewhat Reliable; the method is well understood and seems to work but I'm not sure someone has done a deep dive audit into whether it could be re-enabled somehow.
-
Modern CPUs have a backstage cast
"...this is interesting is because POWER9 is basically the first time the public got a real view of how sophisticated the backstage cast actually is of a modern server CPU."
Not quite correct; the OpenSPARC T1 and T2 were publicly released and available by 2008.
https://www.oracle.com/servers/technologies/opensparc.html
"Large parts of this process are handled by vendor-supplied mystery firmware blobs, which may as well be boxes with “???” written in them.
The maintainers of the me_cleaner script likely have the clearest view of what is known.
https://github.com/corna/me_cleaner
- What is the most trusted hardware most OpenBSD people would suggest?
-
Let's find our next HW wallet
Your dedicated laptop with disabled Intel ME running OpenBSD might be the gold standard choice for your hardware wallet. Main discussion here.
-
Laptop with deactivated Intel ME running OpenBSD as a hardware wallet for top cryptos
I consider a dedicated laptop with deactivated Intel ME running OpenBSD (maybe from USB flash) can be a much secure alternative to a proprietary hardware wallet connected to your casual multi-purpose laptop.
-
On Intel ME
On a side note, if Intel has made it this hard to disable Intel ME, is the US government happy with this change? It was them who got the HAP bit part working, and I do not see any news suggesting they have another trick to disable Intel ME. Should I just assume that this still works? Has anybody here tried? And does me_cleaner still work (last updated in 2018: https://github.com/corna/me_cleaner)?
-
I ordered my first laptop from System76. I'm so excited
This is incorrect. Intel ME has an internal disablement mechanism: https://github.com/corna/me_cleaner/wiki/HAP-AltMeDisable-bit this is the mechanism that it used by S76 and Purism.
- linux and tails compromised? if this is real we lost all privacy. found it on twitter
-
Why I Use Old Hardware
If you are sensitive about the Intel Management Engine, the original Core 2 Duo/Quad systems are the last where it could be fully disabled.
Anything later will forcibly shut down after 30 minutes if (at least a fragment of) Intel's closed & bug-ridden monitoring code is not present.
I ran me_cleaner on a few of these systems, and I do all my finances with them running OpenBSD (usually on q9550s).
Yes, this effort to run old hardware is worth it for me. Below are the bios images that I was able to produce:
https://github.com/corna/me_cleaner/issues/233
ExpansionCards
-
Framework's software and firmware have been a mess, but it's working on them
I think the SD module won't be able to have the card flush, as the modules are only and SD cards are 32mm long, and you need some PCB space for the socket cage and the USB-C on the other side. The retrofit PCB outline they provide is only 26.9mm from front edge to back edge, so an SD card will stick out a little bit.
So perhaps they decided to go for the one that lets users have the card flush for use like an expansion bay as well as for data transfer to/from devices.
https://github.com/FrameworkComputer/ExpansionCards/tree/mai...
-
Microsoft starts testing ads in the Windows 11 Start menu
There are many laptops and desktops that fit the bill.
Frame.work: https://frame.work/
Dell: https://www.dell.com/support/kbdoc/en-us/000138246/linux-on-...
System76: https://system76.com/laptops
Kubuntu Focus: https://kfocus.org/land/business
I am sure there are more, this is only what I have found in less than 5 minutes of searching.
- Which Windows/Linux laptop maker do you like the most?
-
The Gazelle Laptops are the biggest POS
I'll buy a frame.work long before I touch system76. Their prices are too high for the general feedback I keep seeing on the quality control. I'm not spending 3k+ to be out a laptop until support responds. Especially, considering they still don't make these in house..
-
That feeling when you are unboxing a flagship keyboard from a major brand in 2023 and find out it uses micro-USB #smh
No they didn't, companies just mostly gave up on it.
-
🖕🖕🖕🖕 Apple
A Framework Laptop (https://frame.work)
- Is there anything out there that has changed, FOR THE BETTER?
-
1080p 7840U laptop
You could get a Framework 13 which comes with your choice of a 7840U or 7640U and a Radeon 780M iGPU. They do officially support Linux, and you don't have to pay for a Windows license, if you go the DIY option and chose to not get a Windows license.
-
ELI5: What makes a consumer laptop in 2023 better than one in 2018?
Take a look at the Framework laptops. They're 100% modular so if stuff like that goes bad you can simply order the replacement part and do it yourself. I'm using a desktop right now but Ithink my next laptop is gonna be a framework.
-
Conflicting information from Framework on my preorder
a couple of days ago I tried to order a Framework laptop (13 inch AMD). I chose to create an account during the checkout process and provided my email address. After entering my shipping details, I authorized the transfer of the deposit fee via Giropay. The deposit was deducted from my bank account but when I was sent back to the frame.work website I was greeted by an error message. Unfortunately I could neither complete the checkout process nor continue my account registration.
What are some alternatives?
firmware-open - System76 Open Firmware
system76-driver - System76 Driver for Pop!_OS
thinkpad-firmware-patches - Collection of ThinkPad UEFI patches.
pdfarranger - Small python-gtk application, which helps the user to merge or split PDF documents and rotate, crop and rearrange their pages using an interactive and intuitive graphical interface.
t430-coreboot - coreboot rom for thinkpad t430
coreboot - Mirror of https://review.coreboot.org/coreboot.git. We don't handle Pull Requests.
coreboot - DEPRECATED: coreboot on the w541. See link below.
linux-surface - Linux Kernel for Surface Devices
cadmium - [Moved to: https://github.com/Maccraft123/Cadmium]
Killed by Google - Part guillotine, part graveyard for Google's doomed apps, services, and hardware.
thepyphone - Voice and SMS/MMS on a Raspberry Pi 3B+
hardened_malloc - Hardened allocator designed for modern systems. It has integration into Android's Bionic libc and can be used externally with musl and glibc as a dynamic library for use on other Linux-based platforms. It will gain more portability / integration over time.