me_cleaner VS thinkpad-firmware-patches

Compare me_cleaner vs thinkpad-firmware-patches and see what are their differences.

me_cleaner

Tool for partial deblobbing of Intel ME/TXE firmware images (by corna)

thinkpad-firmware-patches

Collection of ThinkPad UEFI patches. (by digmorepaka)
Our great sponsors
  • InfluxDB - Power Real-Time Data Analytics at Scale
  • WorkOS - The modern identity platform for B2B SaaS
  • SaaSHub - Software Alternatives and Reviews
me_cleaner thinkpad-firmware-patches
97 21
4,352 224
- -
0.0 2.7
over 1 year ago 3 months ago
Python
GNU General Public License v3.0 only Do What The F*ck You Want To Public License
The number of mentions indicates the total number of mentions that we've tracked plus the number of user suggested alternatives.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.

me_cleaner

Posts with mentions or reviews of me_cleaner. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2023-05-30.
  • Power issue with my X250. Time to upgrade? (more info in comments)
    1 project | /r/thinkpad | 19 Jun 2023
    Some times Intel version of Lenovo have a problem with Intel ME , check this out. LINK
  • System76's Coreboot Open Firmware Manages to Disable Intel Me for Raptor Lake
    1 project | news.ycombinator.com | 2 Jun 2023
    Yes; there are several ways, depending heavily on the version, and ranging from most trustworthy to least trustworthy:

    * By patching the ME firmware itself - see the me_cleaner project, and methods documented here: https://puri.sm/posts/deep-dive-into-intel-me-disablement/ . This is Pretty Reliable; the runtime code has been deleted from flash.

    * By setting a bit in the flash configuration, assumed to be added for the US High Assurance program: https://github.com/corna/me_cleaner/wiki/HAP-AltMeDisable-bi... , https://www.ptsecurity.com/ww-en/analytics/disabling-intel-m... . This is Mostly Reliable; the mechanism has been fairly aggressively reverse engineered and was added for a program with strict requirements.

    * By sending an HECI command that says "hey ME, turn off your runtime" https://review.coreboot.org/c/coreboot/+/52800 . This is Somewhat Reliable; the method is well understood and seems to work but I'm not sure someone has done a deep dive audit into whether it could be re-enabled somehow.

  • Modern CPUs have a backstage cast
    5 projects | news.ycombinator.com | 30 May 2023
    "...this is interesting is because POWER9 is basically the first time the public got a real view of how sophisticated the backstage cast actually is of a modern server CPU."

    Not quite correct; the OpenSPARC T1 and T2 were publicly released and available by 2008.

    https://www.oracle.com/servers/technologies/opensparc.html

    "Large parts of this process are handled by vendor-supplied mystery firmware blobs, which may as well be boxes with “???” written in them.

    The maintainers of the me_cleaner script likely have the clearest view of what is known.

    https://github.com/corna/me_cleaner

  • What is the most trusted hardware most OpenBSD people would suggest?
    2 projects | /r/openbsd | 22 May 2023
  • Let's find our next HW wallet
    2 projects | /r/CryptoCurrency | 18 May 2023
    Your dedicated laptop with disabled Intel ME running OpenBSD might be the gold standard choice for your hardware wallet. Main discussion here.
  • Laptop with deactivated Intel ME running OpenBSD as a hardware wallet for top cryptos
    4 projects | /r/Monero | 9 May 2023
    I consider a dedicated laptop with deactivated Intel ME running OpenBSD (maybe from USB flash) can be a much secure alternative to a proprietary hardware wallet connected to your casual multi-purpose laptop.
  • On Intel ME
    1 project | /r/privacy | 2 May 2023
    On a side note, if Intel has made it this hard to disable Intel ME, is the US government happy with this change? It was them who got the HAP bit part working, and I do not see any news suggesting they have another trick to disable Intel ME. Should I just assume that this still works? Has anybody here tried? And does me_cleaner still work (last updated in 2018: https://github.com/corna/me_cleaner)?
  • I ordered my first laptop from System76. I'm so excited
    1 project | /r/linuxmasterrace | 25 Apr 2023
    This is incorrect. Intel ME has an internal disablement mechanism: https://github.com/corna/me_cleaner/wiki/HAP-AltMeDisable-bit this is the mechanism that it used by S76 and Purism.
  • linux and tails compromised? if this is real we lost all privacy. found it on twitter
    1 project | /r/Monero | 10 Apr 2023
  • Why I Use Old Hardware
    2 projects | news.ycombinator.com | 11 Mar 2023
    If you are sensitive about the Intel Management Engine, the original Core 2 Duo/Quad systems are the last where it could be fully disabled.

    Anything later will forcibly shut down after 30 minutes if (at least a fragment of) Intel's closed & bug-ridden monitoring code is not present.

    I ran me_cleaner on a few of these systems, and I do all my finances with them running OpenBSD (usually on q9550s).

    Yes, this effort to run old hardware is worth it for me. Below are the bios images that I was able to produce:

    https://github.com/corna/me_cleaner/issues/233

thinkpad-firmware-patches

Posts with mentions or reviews of thinkpad-firmware-patches. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2023-09-30.
  • [GUIDE] ThinkPad BIOS: Reading, Patching, and Flashing
    3 projects | /r/thinkpad | 30 Sep 2023
    "skyra1n" ThinkPad Firmware Patches from digmorepaka's GitHub a list of UEFI patches for ThinkPads, these are the special sauce for adding features to our BIOS. If you have a ThinkPad 30 series device, you do not need to follow this guide for flashing skyra1n, you can flash your BIOS with the internal flashing software.
  • Did a few mods on my T480s
    1 project | /r/hackintosh | 30 May 2023
  • where to find t480 custom bios?
    1 project | /r/thinkpad | 19 May 2023
  • T480 Advice ?
    1 project | /r/thinkpad | 5 May 2023
    I bios unlocked and enabled the custom undervolt menu on 1.44 bios using a ch341 bios programmer. This way I set the undervolt via the bios rather than throttlestop.
  • Disabling Intel AMT on T460s
    1 project | /r/thinkpad | 23 Apr 2023
    -thinkpad-firmware-patches;https://github.com/digmorepaka/thinkpad-firmware-patches
  • t14 gen1 AMD BIOS mod?
    1 project | /r/thinkpad | 18 Apr 2023
    Hey guys! Have any one tried this BIOS mod on latest firmware?
  • My new T480s
    1 project | /r/thinkpad | 16 Feb 2023
    Here's the link to the uefi patches which are used to unlock the bios. https://github.com/digmorepaka/thinkpad-firmware-patches There's a very short and undetailed guide how to apply the patches to your bios. But just know that you need an external bios programmer like ch341a
  • Snagged a cheap Thinkpad T480 i5-8250U, would love some advice on upgrades and distros
    1 project | /r/thinkpad | 9 Nov 2022
    First thing is to verify that the thunderbolt firmware is up to date and that both ports are working. Start here https://pcsupport.lenovo.com/br/en/solutions/ht508988. Then, if you want, you can buy these two and use these equipment (Ams1117 3.3v ) > aliexpress.com/item/32838236408.html with my ch341a > aliexpress.com/item/32841448145.html to make the bios mod (this will work for cards of wifi better wifi 6 and hackintosh) the patches are here (https://github.com/digmorepaka/thinkpad-firmware-patches), (it is possible to clean the intel ME) too, if you can't do it, don't risk it, ask help here in the community. I suggest backing up your bios and also the thunderbolt bios. Here is another topic from a colleague in the community and in it there is a pdf of mine where to check the cfg-lock to enable or disable.
  • Thinkpad T480S Bios Error 1802: Unauthorized network card stops bios post
    1 project | /r/thinkpad | 2 Nov 2022
    You can try flash this bios mod to remove the whitelist. https://github.com/digmorepaka/thinkpad-firmware-patches
  • Lenovo Expects 30+ Platforms With Linux Support This Year
    1 project | /r/linux | 1 Aug 2022
    Pretty sure the whitelist for wifi is long gone, if not, there's always patches. Not for newbs admittedly.

What are some alternatives?

When comparing me_cleaner and thinkpad-firmware-patches you can also consider the following projects:

firmware-open - System76 Open Firmware

UEFITool - UEFI firmware image viewer and editor

t430-coreboot - coreboot rom for thinkpad t430

coreboot - Mirror of https://review.coreboot.org/coreboot.git. We don't handle Pull Requests.

coreboot - DEPRECATED: coreboot on the w541. See link below.

1vyrain - LiveUSB Bootable exploit chain to unlock all features of xx30 ThinkPad machines. WiFi Whitelist, Advanced Menu, Overclocking.

cadmium - [Moved to: https://github.com/Maccraft123/Cadmium]

OpenCorePkg - OpenCore bootloader

thepyphone - Voice and SMS/MMS on a Raspberry Pi 3B+

bugtracker - Acidanthera Bugtracker

Remove_IntelME_FPT - A guide for disabling Intel Management Engine using FPT on PCH SPI

UsbAsp-flash - Program allow you to program flash memory on the protocols spi, I2C, MicroWire. Supports CH341a, UsbAsp, AVRISP(LUFA), Arduino, FT232H.