Skip to content

Instantly share code, notes, and snippets.

@redknightlois
Last active September 30, 2023 19:13
Show Gist options
  • Save redknightlois/f0ea3e89286588a87cf1f86593faceeb to your computer and use it in GitHub Desktop.
Save redknightlois/f0ea3e89286588a87cf1f86593faceeb to your computer and use it in GitHub Desktop.
How to update your Intel Management Engine

Intel Chip Flaws Leave Millions of Devices Exposed

If you dont know what we are talking about read: https://www.wired.com/story/intel-management-engine-vulnerabilities-pcs-servers-iot/

Step-by-Step on Windows

  1. Download the Intel security advisory detection tool: https://downloadcenter.intel.com/downloads/eula/27150/Intel-SA-00086-Detection-Tool?httpDown=https%3A%2F%2Fdownloadmirror.intel.com%2F27150%2Feng%2FSA00086_Windows.zip

  2. Execute from the DiscoveryTool.GUI directory the Intel-SA-00086-GUI.exe file. If you are vulnerable you need to continue the step-by-step.

  3. Figure out what is your motherboard to get the advisory patch (you dont need to open your computer to know that). From the command line execute: wmic baseboard get product,Manufacturer,version,serialnumber

You will get something like this:

Manufacturer           Product  SerialNumber     Version
ASUSTeK COMPUTER INC.  Z170-P   111111111111111  Rev X.0x

Now you know you need to look for ASUS Z170-P drivers/firmware.

  1. Go to your motherboard provider and pray they have released for your firmware after the 1st of November of 2017. For example, for ASUS support links look like: https://www.asus.com/us/Motherboards/{motherboard-product}/HelpDesk_BIOS/

  2. Install the firmare (if any).

  3. Run the detection tool again to ensure that you have patched your system.

Warning

Firmware installer may go south because of many reasons.

Confirmed known to happen:

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment