

creating a modified copy of this firmware using me_cleaner.reading the original firmware from the BIOS flash chip (and validating this), using the RPi3/4.setting up a Raspberry Pi 3 Model B (or B+) ('RPi3') or Pi 4 Model B ('RPi4') as an in-system flash programmer.

locating (and identifying) the BIOS flash chip on your target PC.ensuring you have the necessary components available.The process we will be following is as follows: Remember: disabling the IME is a completely optional step: proceed entirely at your own risk. On some (though not many) PCs, the ME is used to initialize or manage certain system peripherals and/or provide silicon workarounds - if that is the case on your target machine, you may lose functionality by disabling it. It may result in your machine becoming 'bricked'. The process involved will require re-flashing your system's BIOS-chip firmware image, and will almost certainly void your system warranty.

This combined 'belt-and-braces' approach means that the ME ought to cleanly enter a self-induced null state (after resetting the 30-minute watchdog timer) but, should that not work, it will nevertheless enter a failed state shortly thereafter (as the majority of its core software modules have been purged).

In this mini-guide, I'll run through the process of disabling the IME on your target PC. It has full network and memory access and runs proprietary, signed, closed-source software at ring -3, independently of the BIOS, main CPU and platform operating system - a fact which many regard as an unacceptable security risk (particularly given that at least one remotely exploitable security hole has already been reported ). The Intel Management Engine ('IME' or 'ME') is an out-of-band co-processor integrated in all post-2006 Intel-CPU-based PCs.
