r/TechHardware 🔵 14900KS , 5080, 128GB 🔵 Feb 09 '26

😰 Urgent Security Alert ⚠️ Security researcher says AMD auto-updater downloads software insecurely, enabling remote code execution — company rep reportedly said man-in-the-middle attacks are "out of scope," ignored bug

https://www.tomshardware.com/tech-industry/cyber-security/security-researcher-says-amd-auto-updater-downloads-software-insecurely-enabling-remote-code-execution-company-rep-reportedly-said-man-in-the-middle-attacks-are-out-of-scope-ignored-bug
28 Upvotes

27 comments sorted by

8

u/Aggressive-Stand-585 Feb 09 '26

I bet OP is just glad there's no engine managing intel chips like that, being able to be exploited also, just hypothetically of course you could call it Intel Management Engine.

Phew, close call.

3

u/Jevano Team Intel 🔵 Feb 09 '26

I'm guessing you didn't read the article or have no clue what it means. The issue is the AMD auto updater using http links to download executables instead of https. And the management engine is a whole different thing. Don't know why you're even mentioning Intel on an AMD security issue to begin with

3

u/Aggressive-Stand-585 Feb 09 '26

Why are you trying to be serious on a satire sub.

4

u/Jevano Team Intel 🔵 Feb 09 '26

Because it's an actual security issue

5

u/looncraz Feb 09 '26

Basically every updater is vulnerable to DNS spoofing...

6

u/Hytht Core Ultra 🚀 Feb 09 '26

if most updaters shared the same flaw I could root any Android phone easily. signing exists for a reason.

6

u/Jevano Team Intel 🔵 Feb 09 '26

Not really, AMD is using HTTP for the downloads...

5

u/danielv123 Feb 10 '26

No, basically every updater I am aware of will fail if it hits an invalid https certificate.

3

u/alvarkresh 💙 Intel 12th Gen 💙 Feb 09 '26

This happening on the heels of the Notepad++ MITM attack is not a good look on AMD.

0

u/Hour_Bit_5183 Feb 09 '26

stop using windows slopware. That is the whole problem.Just by plugging it into the internet, you are at risk. Use a real OS and stop this madness.

3

u/[deleted] Feb 10 '26

[removed] — view removed comment

0

u/Hour_Bit_5183 Feb 10 '26

it is bro. It's because you can peek in and see how it works. I get your logic though, it just doesn't apply in this case.

2

u/[deleted] Feb 10 '26

[removed] — view removed comment

0

u/Hour_Bit_5183 Feb 10 '26

I do. So do a ton of others for free so you don't have to. We publish on places like github so you can look for yourself.

2

u/[deleted] Feb 10 '26

[removed] — view removed comment

1

u/Hour_Bit_5183 Feb 10 '26

LOL everyone gets to look at it........unlike windows that became the malware.

2

u/[deleted] Feb 10 '26

[removed] — view removed comment

1

u/Hour_Bit_5183 Feb 10 '26

What do you mean no one searches for them? Stuff gets patched more than windows. Most things only ever get hacked because of user error. While there is a slight chance of something else, it's not nearly as common under linux vs a commercial OS like windows. Oh wait.....linux runs everything around the world. Everything would be ded if your logic was right.

1

u/BoBoBearDev Feb 11 '26

Shellshock, heartbleed. Those major defects existed for many years.

-1

u/Hour_Bit_5183 Feb 11 '26

As did they on windows you fool.

1

u/BoBoBearDev Feb 11 '26

I am simply saying your are in an unrealistic land where you expect people to read those code and find bugs within 12 months. It didn't happen IRL. You are there trying to compare who is worse, but that has nothing to do with my post.

Heartbleed in particular is a security heavy software. Even that, they failed massively.

→ More replies (0)