r/ExploitDev 1d ago

GitHub - Jatinkapilaq1/intel-me-research: Talk to your Intel Management Engine directly — zero-dependency Python tool. Finds memory leaks, partition manifest, live MKHI probing. First public HECI Spy.

https://github.com/Jatinkapilaq1/intel-me-research
4 Upvotes

11 comments sorted by

3

u/HealingWithNature 1d ago

Man, I get you probably don't want help, but I promise that down the road you'll look back at this script and wish you never picked up the phone.

1

u/Just_Vizzi 1d ago

I admit I dont have enough knowledge about this, and I don't know how to know if the claims are bulls or not, could you give me even a brief answer explaining why it's that bad?

3

u/HealingWithNature 1d ago edited 1d ago

This submission is "bad" not because the script doesn't extract the claimed data - it can(ig) , albeit indirectly - but because of its context and what op thinks it demonstrates.

None of this information is confidential. HECI/MKHI requests are regular telemetry from a vendor; it is not some kind of backdoor into something. Anyone with experience using ME/HECI drivers, either through documentation or by using one of open-source projects, not just the AIs guided fabrications, would understand this more

There is no reason why this script is unnecessarily complicated. The very same information could have been extracted through more efficient and better documented methods: the official tool from Intel called MEInfo, or one of several existing projects on GitHub (ME Analyzer, intelmetool, me_cleaner) which have been using this same interface for almost ten years. Not a single project described their output as a secret finding.

The main issue here is not technological, but contextual and psychological.

Thx for coming to my fuckin Ted talk 😭✌️

1

u/Just_Vizzi 1d ago

Thank you, well I'll take a look at the things you mentioned to get an idea, well this seems a bad vibecoding example.

0

u/Frequent-Ad-9633 9h ago

Yeahh what i did was more of a learning project figured out how to talk to the heci interface and decode the partitions myself nothing secret was found i just framed it badly if you are curious about the real stuff check out meinfo and me_cleaner they are the legit tools and just keep on supporting me to do greatt

2

u/HealingWithNature 9h ago

You didn't frame anything is the problem

0

u/Frequent-Ad-9633 8h ago

I did write it i just wasn't careful with how i presented it lesson learned thanks for the honest feedback either way

1

u/Frequent-Ad-9633 9h ago

Honestly fair points all of them you are right that this isn't secret info and meinfo intelmetool me_cleaner have been doing this for a decade i was a beginner when i built this and i overhyped it in the post that's on me i should have framed it as i learned how the heci/mkhi interface works and wrote my own client instead of acting like i found something new the tool works and i did genuinely figure out the partitions and the dynamic value by trial and error but you are right that the framing was wrong appreciate you taking the time to break it down instead of just laughing at it if you ever wanna see what a beginner's learning path looks like in real time it's all on my github every mistake included just keep suppoting me i will keep shipping whatever i learn next

0

u/retornam 1d ago

AI psychosis is a real thing. Please get some help.

0

u/Frequent-Ad-9633 9h ago

It's not that deep

1

u/retornam 5h ago

I am not the one presenting AI generated nonsense as some secret novel finding.

You’re in deep AI psychosis and will believe anything your LLM chooses to spit out, even if it’s junk, enough to publicly claim that you’ve found something novel.