Intel searching for hackers to expand “Project Circuit Breaker” bug bounty program, claims AMD CPUs are more buggy

Intel introduced yesterday the introduction of “Project Circuit Breaker,” the corporate’s latest manner to collect the help of “elite hackers” to assist enhance the safety throughout the firm’s {hardware} and software program.
Intel sends out the decision to all hackers to enlist in Project Circuit Breaker to assist uncover safety flaws in Intel software program and {hardware}
For the primary time, safety researchers and specialists shall be in a position to work with Intel’s product and safety crews via real-time hacking occurrences that will comprise bounty multipliers up to 4x. Contests like “seize the flag” and extra actions will help and prepared researchers for challenges, together with admission to beta software program and {hardware}, together with different distinctive prospects.
Intel Announces $1 Billion Fund to Build a Foundry Innovation Ecosystem: Utilizing Open RISC-V & Chiplet Applied sciencesProject Circuit Breaker will complement Intel’s current open Bug Bounty program, which rewards researchers for unique vulnerability findings on any eligible branded merchandise and applied sciences. This program helps Intel to establish, mitigate and disclose vulnerabilities; in 2021, 97 of 113 externally discovered vulnerabilities had been reported via Intel’s Bug Bounty program. As demonstrated by Intel’s Security-First Pledge, the corporate invests extensively in vulnerability administration and offensive safety analysis for the continual enchancment of its merchandise.
Project Circuit Breaker incorporates time-specific occasions on distinctive new platforms and applied sciences. Intel’s first Project Circuit Breaker occasion is presently energetic, with twenty safety researchers analyzing Intel Core i7 Tiger Lake processors.

Currently, a few of the researchers* working with Intel are:
Hugo Magalhaes
breaker
allowetotima
dreamercat
mmg
avivanoa
What Intel is trying for of their line of “elite hackers”:
Creative mindset
Ability to construct, check, and iterate on a check speculation to establish new assault vectors
Interest/expertise in laptop programs, structure, CPU.SOC chipsets, bios, firmware, drivers, and low-level coding
Ability to reverse engineer complicated environments
Experienced in vulnerability analysis, exploit growth, and accountable disclosure
Track file of vulnerability discovery/safe software growth or safety publications

Intel has commented that its laptop processors encountered 16 reported safety vulnerabilities final 12 months, which is lower than the uncovered weaknesses that AMD’s processors confronted, which had been 31 flaws. However, Intel leads within the variety of discrepancies on graphics and your complete complete of deficiencies for 2021. Almost half of Intel’s graphics card vulnerabilities originate from an AMD graphics element utilized in its chip designs.
Next-Gen Intel Arc Gaming GPUs To Utilize Multi-Chiplet Design As Hinted Within PatentThe info of basic flaws comes from Intel’s new 2021 product safety report, offering statistics that present the variety of vulnerabilities and the way Common Vulnerabilities and Exposure stories are organized and provide details about Intel’s newest bug bounty program.

Intel contends that its processors encountered 16 safety flaws in 2021, with six of the failings detected by researchers in its earlier bug bounty program. The different 4 vulnerabilities had been found from inside Intel. Intel positioned as many as 15 bugs internally relating to graphics discrepancies, whereas exterior sources discovered the remaining 36 via their program.
Intel primarily embeds its built-in graphics into Intel’s processors. It is troublesome to match these numbers absolutely since Intel’s graphics models are embedded of their laptop processors. The solely exception to that is the corporate’s Xe DG1.
Intel additional explains that the CVE INTEL-SA-00481 for the corporate’s Intel Core Processors with onboard AMD Radeon RX Vega M graphics reveals 23 vulnerabilities for AMD’s gadgets. This info issues the Intel Kaby Lake-G processors in contrast to the eighth Gen Intel Core processors with AMD’s Radeon graphics showing in laptops such because the Dell XPS 15 2-in-1 and the “Hades Canyon” NUC. Even with the problems falling on Intel’s chip, AMD’s sections confirmed essentially the most important quantity of safety vulnerabilities.
Intel went solely to exterior analysis for AMD’s knowledge, starting from May to December of 2021. Intel’s analysis states that it didn’t uncover any CVEs attributed to AMD’s inside investigation final 12 months.
Graphics processing models had the loftiest variety of CVEs for Intel final 12 months, whereas ethernet and software program vulnerabilities remained parallel at 34 vulnerabilities.
Intel discloses that its inside safety analysis discovered 50% of vulnerabilities, whereas the exterior bug bounty program detected 43% of the problems. The remaining 7% is from open-source duties or associations that can’t be included in Project Circuit Breaker.
If you need more details about Intel’s new bug bounty program, try the official web site at ProjectCircuitBreaker.com.
Source: Project Circuit Breaker by Intel, Tom’s Hardware
*Intel notes that some people working within the new program would really like to stay nameless.

https://wccftech.com/intel-bug-bounty-program-claims-less-bugs-than-amd-cpus/

Recommended For You