Redian新闻
>
MINIX — The most popular OS in the world, thanks to Intel
avatar
MINIX — The most popular OS in the world, thanks to Intel# Programming - 葵花宝典
A*4
1
爸妈1000北京签经1月14日上午8点45,面谈大概5-6分钟。他们自己觉得时间算短的,
大部分十分钟左右,据他们说。问题基本上是跟着我们的邀请信的思路。大使馆面试他
们的是个白人女签证官,心情比较好,一直微笑。
签:你好!
爸:你好
签: 去干什么?
爸:看我大女儿大女婿,顺便观光旅游。顺便把资料递上去。(潜台词是还有别的孩子
,好像签证官没听清)
签: 你们俩什么关系?
爸: 夫妻关系。
签: 你女儿在哪里?
爸:(还没等说,签证官自己在材料中找到了)
签:什么专业?
妈:XX
签:小女儿多大,和姐姐差几岁,在哪工作?
答:XXX
签: 有照片吗?
爸: 有。。。
(看照片中。。。。)
签:指着照片,这是哪?
爸:我不知道,这是美国的,我女儿照得发给我的。(我汗。。。。)
签: 你们女儿真厉害。。。
爸: 嘿嘿。。。
签:你是做什么工作的?
爸:XXX.(其实已经退休了几年,竟然还说得原来的单位!但是和DS160上以前的
单位是一致的)
签:在那工作了多久?
爸:XX
签:旅行的费用?
爸:我们自己承担。。。(我爸没有继续说存款房产什么的,汗。。。)
签:是第一次出国吗?
爸:是的
签:祝你们旅游愉快,并且介绍邮寄。。。。
avatar
G*s
2
书荒的,没看过的可以试试
avatar
p*u
3
Intel不仅脑残而且rude,都不跟作者打声招呼:

Take a look at your desktop computer. What operating system is it currently
running?
Now take a look in your data center — at all of your servers. What
operating system are they running?
Linux? Microsoft Windows? Mac OS X? You could be running any of those three
— or one of countless others.
But here’s the crazy part: That’s not the only operating system you’re
running.
If you have a modern Intel CPU (released in the last few years) with Intel’
s Management Engine built in, you’ve got another complete operating system
running that you might not have had any clue was in there: MINIX.
That’s right. MINIX. The Unix-like OS originally developed by Andrew
Tanenbaum as an educational tool — to demonstrate operating system
programming — is built into every new Intel CPU.
MINIX is running on “Ring -3” (that’s “negative 3”) on its own CPU. A
CPU that you, the user/owner of the machine, have no access to. The lowest
“Ring” you have any real access to is “Ring 0,” which is where the
kernel of your OS (the one that you actually chose to use, such as Linux)
resides. Most user applications take place in “Ring 3” (without the
negative).
The first thing that jumps out at me here: This means MINIX (specifically a
version of MINIX 3) is in all likelihood the most popular OS shipping today
on modern Intel-based computers (desktops, laptops and servers). That, right
there, is absolutely crazy.
The second thing to make my head explode: You have zero access to “Ring -3
” / MINIX. But MINIX has total and complete access to the entirety of your
computer. All of it. It knows all and sees all, which presents a huge
security risk — especially if MINIX, on that super-secret Ring -3 CPU, is
running many services and isn’t updated regularly with security patches.
Google wants to remove MINIX from its internal servers
According to Google, which is actively working to remove Intel’s Management
Engine (MINIX) from their internal servers (for obvious security reasons),
the following features exist within Ring -3:
Full networking stack
File systems
Many drivers (including USB, networking, etc.)
A web server
That’s right. A web server. Your CPU has a secret web server that you are
not allowed to access, and, apparently, Intel does not want you to know
about.
Why on this green Earth is there a web server in a hidden part of my CPU?
WHY?
The only reason I can think of is if the makers of the CPU wanted a way to
serve up content via the internet without you knowing about it. Combine that
with the fact that Ring -3 has 100 percent access to everything on the
computer, and that should make you just a teensy bit nervous.
The security risks here are off the charts — for home users and enterprises
. The privacy implications are tremendous and overwhelming.
Note to Intel: If Google doesn’t trust your CPUs on their own servers,
maybe you should consider removing this “feature.” Otherwise, at some
point they’ll (likely) move away from your CPUs entirely.
Note to AMD: Now might be a good time to remove similar functionality from
your CPU lines to try to win market share from Intel. Better to do so now
before Intel removes the “Management Engine.” Strike while the iron’s hot
and all that.
Note to Andrew Tanenbaum: Your operating system, MINIX, is now one of the
most used on modern computers! That’s kinda cool, right?
Note to everyone else: We’re all MINIX users now.

https://www.networkworld.com/article/3236064/servers/minix-the-most-popular-
os-in-the-world-thanks-to-intel.html
avatar
r*e
4
Cong~
avatar
n*g
5
当年玩过这个

currently
three

【在 p*u 的大作中提到】
: Intel不仅脑残而且rude,都不跟作者打声招呼:
: “
: Take a look at your desktop computer. What operating system is it currently
: running?
: Now take a look in your data center — at all of your servers. What
: operating system are they running?
: Linux? Microsoft Windows? Mac OS X? You could be running any of those three
: — or one of countless others.
: But here’s the crazy part: That’s not the only operating system you’re
: running.

avatar
p*d
6
cong!!!
avatar
w*g
7
what the fsck!

currently
three

【在 p*u 的大作中提到】
: Intel不仅脑残而且rude,都不跟作者打声招呼:
: “
: Take a look at your desktop computer. What operating system is it currently
: running?
: Now take a look in your data center — at all of your servers. What
: operating system are they running?
: Linux? Microsoft Windows? Mac OS X? You could be running any of those three
: — or one of countless others.
: But here’s the crazy part: That’s not the only operating system you’re
: running.

avatar
n*p
8
Tanenbaum可能真不知道Intel用了,他2015年还在到处筹钱。

currently
three

【在 p*u 的大作中提到】
: Intel不仅脑残而且rude,都不跟作者打声招呼:
: “
: Take a look at your desktop computer. What operating system is it currently
: running?
: Now take a look in your data center — at all of your servers. What
: operating system are they running?
: Linux? Microsoft Windows? Mac OS X? You could be running any of those three
: — or one of countless others.
: But here’s the crazy part: That’s not the only operating system you’re
: running.

avatar
g*t
9
散户只能默默忍受
十个字
avatar
o*o
10
intel这个management engine是集成在主板的BIOS里吧,只有DELL或者HP这样的服务器
才有,是为了方便企业安装监控机器。大部分普通用户应该没有。
avatar
p*u
11
新闻里说大部分desktop芯片里面也有,管boot system的。

【在 o**o 的大作中提到】
: intel这个management engine是集成在主板的BIOS里吧,只有DELL或者HP这样的服务器
: 才有,是为了方便企业安装监控机器。大部分普通用户应该没有。

avatar
c*1
12
Firmware

【在 p*u 的大作中提到】
: 新闻里说大部分desktop芯片里面也有,管boot system的。
avatar
t*n
13
二十多年前读书的时候见过,买了本书看了看
没想到我一直在默默地使用它啊
阴特自己开发个不行么?非得盗用一个别人的
avatar
r*z
14
这就是为什么开源软件应该用GPL
相关阅读
logo
联系我们隐私协议©2024 redian.news
Redian新闻
Redian.news刊载任何文章,不代表同意其说法或描述,仅为提供更多信息,也不构成任何建议。文章信息的合法性及真实性由其作者负责,与Redian.news及其运营公司无关。欢迎投稿,如发现稿件侵权,或作者不愿在本网发表文章,请版权拥有者通知本网处理。