Disabling the Intel Management Engine

The Intel Management Engine (‘IME’ or ‘ME’) is an out-of-band co-processor integrated in all post-2006 Intel-CPU-based PCs. It has full network and memory access and runs proprietary, signed, closed-source software at ring -2, independently of the BIOS, main CPU and platform operating system – a fact which many regard as an unacceptable security risk (particularly given that at least one remotely exploitable security hole has already been reported).

In this mini-guide, I’ll run through the process of disabling the IME on your target PC.

Apparently, the IME co-processor runs… MINIX 3. That is incredibly fascinating. This means every post-2006 Intel PC runs MINIX.

19 Comments

  1. 2017-10-11 12:00 am
    • 2017-10-11 6:20 am
      • 2017-10-11 6:55 am
        • 2017-10-11 7:17 am
          • 2017-10-12 6:01 pm
  2. 2017-10-11 5:25 am
    • 2017-10-11 5:20 pm
    • 2017-10-12 6:12 pm
  3. 2017-10-11 5:34 am
  4. 2017-10-11 11:27 am
  5. 2017-10-11 11:53 am
  6. 2017-10-11 12:20 pm
  7. 2017-10-11 1:33 pm
  8. 2017-10-11 5:40 pm
  9. 2017-10-12 8:30 pm
  10. 2017-10-12 9:45 pm
    • 2017-10-14 7:07 am
  11. 2017-10-14 10:53 am