Updating intel bios
As such, either do some research or take the Intel or your OEM's advice and update these critical ME vulnerabilities according to the Intel/OEM critical advisories.
Heck, if anything, the outrage should be that we owners of these systems have no way to shut off this insecure closed source security processor within a processor that has access to everything (even when the system is powered down)...
Woodhouse pointed out that Retpoline mitigates against Variant 2 attacks on most Intel CPUs, but not fully on Skylake and so has recommended IBRS be only used on this generation of processors.
The latest version of the IME firmware for download is 188.8.131.522 ...
How can I determine the version of the IME firmware on my system?
I noticed the following statement on the BIOS download page: "HP strongly recommends updating the Management Engine firmware to version 184.108.40.2062 to prevent BIOS/Management Engine firmware corruption issues.".
ME has had some serious security issues discovered and reported to Intel this year. Thanks in advance, Mike It's an old post but as others can find this thread via google search, as i did, the above flawed comment needs an answer. should I just go ahead and download and install that before the BIOS update?Microsoft and Google have confirmed Intel's mitigation for the Variant 2 -- IBRS or Indirect Branch Restricted Speculation -- caused significant performance overheads on current hardware.