Embed Notice
HTML Code
Corresponding Notice
- Embed this notice@Nepiant >pretend-disableable IME and sell it to people like System76
No Intel laptops the System76 offers has a disabled IME.
They use a proprietary BIOS with me_cleaner ran on it, which only cuts down the ME (as modern intel CPUs do not init without the ME) and sets the HAP bit to nicely ask the ME to hang after boot.
If you want a system that you can disable the ME on, the only option is a GNUbooted thinkpad.
As for AMD systems, the newest GNUbootable one you can get without the PSP is from 2011.
https://www.gnu.org/software/gnuboot/web/docs/hardware/
The NSA can't really target GNUboot systems you handcraft from separate components if you don't live in the USA.
The IME is a backdoor they only risk burning on high-value targets - for normal glower activities they intercept shipments and use hardware implants.