Snynet Solution Logo
MON - SUN: 10 AM - 6 PM
+60 11 5624 8319

Blog

Intel hacked: Confidential intellectual data obtained and leaked by anonymous hacker

Image Description

It seems that Intel has just been hacked, and 20GB worth of its confidential files and intellectual property are now making its way around the Internet. 

According to Tom’s Hardware, a leaker has shared the link to a 20GB file-sharing folder that allegedly contains chip engineering files apparently stolen from Intel earlier this year in a Twitter post. This folder has been billed as “Intel exconfidential Lake Platform Release ;)” and was originally posted on messaging platform Telegram.

The leaker notes that many of the files in the folder “have NOT been published ANYWHERE before and are classified as confidential, under NDA or Intel Restricted Secret." in addition, it’s been revealed that the password-protected zips in the folder may be accessed using either "Intel123" or "intel123" as the password, which may have been set by Intel itself.

Intel believes that the leak may have “come from the Intel Resource and Design Center, which hosts information for use by our customers, partners and other external parties who have registered for access. We believe an individual with access downloaded and shared this data.”

Files, source codes, backdoors and more

We haven’t verified the folder’s content ourselves. However, our colleagues at Tom’s Hardware have confirmed the existence of said folder. They’ve also shared a list of document titles, which match some of the information shared by the leaker, including:

  • Intel ME Bringup guides + (flash) tooling + samples for various platforms
  • Kabylake (Purley Platform) BIOS Reference Code and Sample Code + Initialization code (some of it as exported git repos with full history)
  • Intel CEFDK (Consumer Electronics Firmware Development Kit (Bootloader stuff)) SOURCES
  • Silicon / FSP source code packages for various platforms
  • Various Intel Development and Debugging Tools
  • Simics Simulation for Rocket Lake S and potentially other platforms
  • Various roadmaps and other documents
  • Binaries for Camera drivers Intel made for SpaceX
  • Schematics, Docs, Tools + Firmware for the unreleased Tiger Lake platform
  • (very horrible) Kabylake FDK training videos
  • Intel Trace Hub + decoder files for various Intel ME versions
  • Elkhart Lake Silicon Reference and Platform Sample Code
  • Some Verilog stuff for various Xeon Platforms, unsure what it is exactly.
  • Debug BIOS/TXE builds for various Platforms
  • Bootguard SDK (encrypted zip)
  • Intel Snowridge / Snowfish Process Simulator ADK
  • Various schematics
  • Intel Marketing Material Templates (InDesign)

That’s not all. The folder also likely contains 'backdoors' in some of the Intel source code, with the hacker’s original post encouraging downloaders to look for them by giving a sample clip of one such listing.

This year hasn’t been good to all of us. However, if this leaked folder does contain such data and isn’t contained soon, Intel might soon be joining the long line of hardest hit companies in 2020. Especially because the hacker has already threatened to release “even juicier and more classified stuff.”

Luckily, it looks like Intel's already on the case. “We are investigating this situation,” the company said when we reached out for comment.

Date

06 Aug 2020

Sources


Share


Other Blog

  • Users absolutely hate the new Firefox web browser

    Firefox 79 for Android delivers a host of unwanted changes - and users are not best pleased.

    Read More
  • It turns out Nvidia really is introducing a 12-pin power connector on the RTX 3080

    Nvidia has released a video, exploring graphics card cooler and board design. And it has some interesting tidbits about the upcoming cards.

    Read More
  • AMD is giving away Far Cry 6 and Resident Evil Village – but only with its most expensive GPU

    This offer was only previously available to buyers of AMD systems with both Ryzen CPUs and RX 6000 GPUs.

    Read More
  • Ubisoft says Just Dance was hit by a data breach

    Ubisoft has notified owners of its Just Dance title of a data breach, which the company says was limited to "technical identifiers", including GamerTags, profile IDs, Device IDs, and some Just Dance videos.

    The attackers targeted the IT infrastructure used by Ubisoft to run Just Dance, which has sold millions of copies, just one month after the launch of Just Dance 2022. Ubisoft says an investigation has "not shown that any Ubisoft account information has been compromised as a result of this incident."

    Ubisoft did not disclose the scale of the breach but said anyone affected would receive an email with more details. Users are advised to enable two-factor authentication (2FA) and reset passwords as a precaution. 

    Panic at the disco

    The company added that it was taking  "all the proactive measures necessary" to make sure its infrastructure is protected against any possible future cyberattacks. 

    The data breach comes at an unfortunate time for Ubisoft, which has released a bunch of incredibly successful titles including Assassin's Creed, Far Cry, the Tom Clancy series, and Watch Dogs

    A recent Axios report described a "great exodus" at the company as dissatisfied employees – many citing low pay, good opportunities elsewhere, frustration at Ubisoft's creative direction, and workplace misconduct scandals – took to the exits. Many even signed an open letter earlier this year. 

    This isn't Ubisoft's first rodeo with data breaches either. At the end of 2020, the company was targeted by the Egregor ransomware, alongside Kmart and Crytek. 

    TechRadar Pro has contacted Ubisoft for comment.

    Read More

Find Out More About Us

Want to hire best people for your project? Look no further you came to the right place!

Contact Us