ืคื’ื™ืขื•ืช ื‘ืขืจื›ื•ืช ืฉื‘ื‘ื™ื ืฉืœ ืื™ื ื˜ืœ ื”ืžืืคืฉืจืช ืœื—ืœืฅ ืืช ืžืคืชื— ื”ื‘ืกื™ืก ืฉืœ ื”ืคืœื˜ืคื•ืจืžื”

ื—ื•ืงืจื™ื ืž-Positive Technologies ื’ื™ืœื” ืคื’ื™ืขื•ืช (CVE-2019-0090), ื”ืžืืคืฉืจืช, ืื ื™ืฉ ืœืš ื’ื™ืฉื” ืคื™ื–ื™ืช ืœืฆื™ื•ื“, ืœื—ืœืฅ ืืช ืžืคืชื— ื”ื‘ืกื™ืก ืฉืœ ื”ืคืœื˜ืคื•ืจืžื” (ืžืคืชื— ืฉื‘ื‘ื™ื), ื”ืžืฉืžืฉ ื›ืฉื•ืจืฉ ืืžื•ืŸ ื‘ืขืช โ€‹โ€‹ืื™ืžื•ืช ื”ืื•ืชื ื˜ื™ื•ืช ืฉืœ ืจื›ื™ื‘ื™ ืคืœื˜ืคื•ืจืžื” ืฉื•ื ื™ื, ื›ื•ืœืœ TPM (Trusted Platform Module) ื• ืงื•ืฉื—ื” ืฉืœ UEFI.

ื”ืคื’ื™ืขื•ืช ื ื’ืจืžืช ืขืœ ื™ื“ื™ ื‘ืื’ ื‘ื—ื•ืžืจื” ื•ื‘ืงื•ืฉื—ื” ืฉืœ Intel CSME, ืฉื ืžืฆืืช ื‘-boot ROM, ืžื” ืฉืžื•ื ืข ืืช ืชื™ืงื•ืŸ ื”ื‘ืขื™ื” ื‘ืžื›ืฉื™ืจื™ื ืฉื›ื‘ืจ ื ืžืฆืื™ื ื‘ืฉื™ืžื•ืฉ. ืขืงื‘ ื ื•ื›ื—ื•ืช ืฉืœ ื—ืœื•ืŸ ื‘ืžื”ืœืš ื”ืคืขืœื” ืžื—ื“ืฉ ืฉืœ Intel CSME (ืœื“ื•ื’ืžื”, ื‘ืขืช ื—ื™ื“ื•ืฉ ืžืžืฆื‘ ืฉื™ื ื”), ื‘ืืžืฆืขื•ืช ืžื ื™ืคื•ืœืฆื™ื” ืฉืœ DMA ื ื™ืชืŸ ืœื›ืชื•ื‘ ื ืชื•ื ื™ื ืœื–ื™ื›ืจื•ืŸ ืกื˜ื˜ื™ ืฉืœ Intel CSME ื•ืœืฉื ื•ืช ื˜ื‘ืœืื•ืช ื“ืคื™ ื–ื™ื›ืจื•ืŸ Intel CSME ืฉืื•ืชืจื• ื›ื‘ืจ ื›ื“ื™ ืœื™ื™ืจื˜ ื‘ื™ืฆื•ืข, ืœืื—ื–ืจ ืืช ืžืคืชื— ื”ืคืœื˜ืคื•ืจืžื” ื•ืœื”ืฉื™ื’ ืฉืœื™ื˜ื” ืขืœ ื™ืฆื™ืจืช ืžืคืชื—ื•ืช ื”ืฆืคื ื” ืขื‘ื•ืจ ืžื•ื“ื•ืœื™ Intel CSME. ืคืจื˜ื™ื ืขืœ ื ื™ืฆื•ืœ ื”ืคื’ื™ืขื•ืช ืžืชื•ื›ื ื ื™ื ืœื”ืชืคืจืกื ื‘ื”ืžืฉืš.

ื‘ื ื•ืกืฃ ืœื—ื™ืœื•ืฅ ื”ืžืคืชื—, ื”ืฉื’ื™ืื” ืžืืคืฉืจืช ื’ื ืœื‘ืฆืข ืงื•ื“ ื‘ืจืžืช ื”ืจืฉืื•ืช ืืคืก ืื™ื ื˜ืœ CSME (Converged Security and Manageability Engine). ื”ื‘ืขื™ื” ืžืฉืคื™ืขื” ืขืœ ืจื•ื‘ ืขืจื›ื•ืช ื”ืฉื‘ื‘ื™ื ืฉืœ ืื™ื ื˜ืœ ืฉื™ืฆืื• ื‘ื—ืžืฉ ื”ืฉื ื™ื ื”ืื—ืจื•ื ื•ืช, ืืš ื‘ื“ื•ืจ ื”ืขืฉื™ืจื™ ืฉืœ ื”ืžืขื‘ื“ื™ื (Ice Point) ื”ื‘ืขื™ื” ื›ื‘ืจ ืœื ืžื•ืคื™ืขื”. ืื™ื ื˜ืœ ื”ืชื•ื•ื“ืขื” ืœื‘ืขื™ื” ืœืคื ื™ ื›ืฉื ื” ื•ืคืจืกืžื” ืขื“ื›ื•ื ื™ ืงื•ืฉื—ื”, ืฉืœืžืจื•ืช ืฉื”ื ืœื ื™ื›ื•ืœื™ื ืœืฉื ื•ืช ืืช ื”ืงื•ื“ ื”ืคื’ื™ืข ื‘-ROM, ืžื ืกื™ื ืœื—ืกื•ื ื ืชื™ื‘ื™ ื ื™ืฆื•ืœ ืืคืฉืจื™ื™ื ื‘ืจืžื” ืฉืœ ืžื•ื“ื•ืœื™ Intel CSME ื‘ื•ื“ื“ื™ื.

ื”ื”ืฉืœื›ื•ืช ื”ืืคืฉืจื™ื•ืช ืฉืœ ื”ืฉื’ืช ืžืคืชื— ื”ื‘ืกื™ืก ืฉืœ ื”ืคืœื˜ืคื•ืจืžื” ื›ื•ืœืœื•ืช ืชืžื™ื›ื” ื‘ืงื•ืฉื—ื” ืฉืœ ืจื›ื™ื‘ื™ Intel CSME, ืคื’ื™ืขื” ื‘ืžืขืจื›ื•ืช ื”ืฆืคื ืช ืžื“ื™ื” ื”ืžื‘ื•ืกืกื•ืช ืขืœ Intel CSME, ื•ื›ืŸ ืืคืฉืจื•ืช ืœื–ื™ื•ืฃ ืžื–ื”ื™ EPID (ืžื–ื”ื” ืคืจื˜ื™ื•ืช ืžืฉื•ืคืจ) ื›ื“ื™ ืœื”ืขื‘ื™ืจ ืืช ื”ืžื—ืฉื‘ ืฉืœืš ื›ืื—ืจ ื›ื“ื™ ืœืขืงื•ืฃ ืืช ื”ื’ื ืช DRM. ืื ืžื•ื“ื•ืœื™ CSME ื‘ื•ื“ื“ื™ื ื ืคื’ืขื™ื, ืื™ื ื˜ืœ ืกื™ืคืงื” ืืช ื”ื™ื›ื•ืœืช ืœื™ืฆื•ืจ ืžื—ื“ืฉ ืืช ื”ืžืคืชื—ื•ืช ื”ืžืฉื•ื™ื›ื™ื ื‘ืืžืฆืขื•ืช ืžื ื’ื ื•ืŸ SVN (ืžืกืคืจ ื’ืจืกืช ืื‘ื˜ื—ื”). ื‘ืžืงืจื” ืฉืœ ื’ื™ืฉื” ืœืžืคืชื— ื”ื‘ืกื™ืก ืฉืœ ื”ืคืœื˜ืคื•ืจืžื”, ืžื ื’ื ื•ืŸ ื–ื” ืื™ื ื• ื™ืขื™ืœ ืžื›ื™ื•ื•ืŸ ืฉืžืคืชื— ื”ื‘ืกื™ืก ืฉืœ ื”ืคืœื˜ืคื•ืจืžื” ืžืฉืžืฉ ืœื™ืฆื™ืจืช ืžืคืชื— ืœื”ืฆืคื ืช ื‘ืœื•ืง ื‘ืงืจืช ื”ืฉืœืžื•ืช (ICVB, Integrity Control Value Blob), ืืฉืจ, ื‘ืชื•ืจื•, ืžืืคืฉืจ ืœืš ืœื–ื™ื™ืฃ ืืช ื”ืงื•ื“ ืฉืœ ื›ืœ ืื—ื“ ืžืžื•ื“ื•ืœื™ ื”ืงื•ืฉื—ื” ืฉืœ Intel CSME.

ื™ืฆื•ื™ืŸ ื›ื™ ืžืคืชื— ื”ืฉื•ืจืฉ ืฉืœ ื”ืคืœื˜ืคื•ืจืžื” ืžืื•ื—ืกืŸ ื‘ืฆื•ืจื” ืžื•ืฆืคื ืช ื•ืœืฉื ืคืฉืจื” ืžื•ื—ืœื˜ืช ื™ืฉ ืฆื•ืจืš ื‘ื ื•ืกืฃ ืœืงื‘ื•ืข ืืช ืžืคืชื— ื”ื—ื•ืžืจื” ื”ืžืื•ื—ืกืŸ ื‘- SKS (Secure Key Storage). ื”ืžืคืชื— ืฉืฆื•ื™ืŸ ืื™ื ื• ื™ื™ื—ื•ื“ื™ ื•ื”ื•ื ื–ื”ื” ืขื‘ื•ืจ ื›ืœ ื“ื•ืจ ืฉืœ ืขืจื›ื•ืช ืฉื‘ื‘ื™ื ืฉืœ ืื™ื ื˜ืœ. ืžื›ื™ื•ื•ืŸ ืฉื”ื‘ืื’ ืžืืคืฉืจ ื‘ื™ืฆื•ืข ืงื•ื“ ื‘ืฉืœื‘ ืœืคื ื™ ื—ืกื™ืžืช ืžื ื’ื ื•ืŸ ื™ืฆื™ืจืช ื”ืžืคืชื—ื•ืช ื‘-SKS, ืฆื•ืคื™ื ื›ื™ ื‘ืžื•ืงื“ื ืื• ื‘ืžืื•ื—ืจ ืžืคืชื— ื”ื—ื•ืžืจื” ื”ื–ื” ื™ื™ืงื‘ืข.

ืžืงื•ืจ: OpenNet.ru

ื”ื•ืกืคืช ืชื’ื•ื‘ื”