The NSA Is Looking To Contribute To A New x86 Security Feature To Coreboot

Written by Michael Larabel in Coreboot on 19 June 2019 at 04:52 PM EDT. 67 Comments
COREBOOT
The US National Security Agency (NSA) has developers contributing to the Coreboot project.

Eugene Myers of the NSA under the Information Assurance Research, NSA/CSS Research Directorate, has been leading some work on an STM/PE implementation for Coreboot.

This implementation is for an SMI Transfer Monitor (STM) to offer protected execution services on x86 by serving as a hypervisor in x86 SMM mode. The NSA work extends STM to support additional virtual machines and paired with an integrity measurement engine can offer greater security to the system. Here's a video with more information on this STM/PE effort from last year's Platform Security Summit:


As of earlier this month, that Coreboot STM/PE code is under review including the x86 STM support and other bits.
Related News
About The Author
Michael Larabel

Michael Larabel is the principal author of Phoronix.com and founded the site in 2004 with a focus on enriching the Linux hardware experience. Michael has written more than 20,000 articles covering the state of Linux hardware support, Linux performance, graphics drivers, and other topics. Michael is also the lead developer of the Phoronix Test Suite, Phoromatic, and OpenBenchmarking.org automated benchmarking software. He can be followed via Twitter, LinkedIn, or contacted via MichaelLarabel.com.

Popular News This Week