Company posts way to expose PIII ID number

A Canada-based security company that posted a demonstration of how malicious code can steal a user's Pentium III serial number without the user's knowledge has had its demonstration program targeted by Intel and Symantec.

Zero-Knowledge Systems of Montreal basically wanted to show Pentium III users the vulnerability the serial number poses, company president Austin Hill said.

"It's a traditional shoot-the-messenger approach," he said. "Intel is holding us responsible because we've demonstrated that Intel's scheme doesn't work and is susceptible to security breaches."

However, Intel and Symantec argue that the program could cause harm to users who ignore the Web site's warnings that the program will reboot their system. They also argue that the code could be used by others with less noble designs.

"Zero-Knowledge does have some warnings on their Web site, but it is possible that the code could be loaded on other Web sites without those warnings," said Intel spokesman George Alfs. "I don't think they have malicious intent ... (but) others could use the code to create harm."

"Why have the executable and run the code and potentially cause problems?" said Enrique Salem, vice president of Symantec's security and assistance business unit. "Making it widely available to people and highlighting it in effect makes people know it's possible."

To warn users of the potential danger from the program, Symantec has included the program on its list of malicious programs in its Norton Antivirus software so it is labelled as a virus when users of the Norton software go to the site, and they are warned that the code could disrupt their systems.

However, all sides agree it's not a virus -- Intel and Symantec say it's technically a Trojan horse, and they consider it malicious code since it crashes the user's system. A Trojan horse is a type of program that pretends to be or do one thing but actually does something else, usually something destructive to the user's system.

Hill of Zero-Knowledge disagrees with Intel's assessment.

"It's not malicious or harmful ... it's clearly labelled," he said. "We clearly warn users that this will reboot your machine in the demo."

Zero-Knowledge developer Mario Contestabile admitted that it's possible someone could re-use the code, which is digitally signed by the company, for malicious purposes, but said doing so would be much more difficult than just rewriting a new Active X control to accomplish the same thing as the demo does.

Specifically, the demo code (located at http://www.zeroknowledge.com/p3/home.asp) grabs the Pentium III's serial number before a software utility developed by Intel and designed to allow the user to disable the serial number can run, said Hill. The code then puts the number in a cookie and directs the user on how to look it up on a Web site, but then erases it, he said.

Meanwhile, Zero-Knowledge also has discovered, but is not demonstrating on its Web site, a way that the serial number can be made accessible through software at the BIOS (basic input/output system) level, Hill said.

"This is the first time anyone has proven that if you disable it (Pentium III serial number) in the BIOS it can still be reactivated," he said. "It's serious because Intel has gone to all the major manufacturers" and told them they can securely disable it at the BIOS. "Well, that is no longer a secure way," he added.

Alfs of Intel pointed out that the potential for software hacks such as these with the Pentium III have been known about for months.

"Any software is potentially hackable, including the BIOS software, and our goal is to continually work with antivirus software to protect the serial number," he said, adding that Intel is working on resolving the security issues.

"Users need to be cautious of any attacks on their system which may attack any part of their user data," including sensitive information other than the Pentium serial number, Alfs said.

Join the PC World newsletter!

Error: Please check your email address.

Our Back to Business guide highlights the best products for you to boost your productivity at home, on the road, at the office, or in the classroom.

Keep up with the latest tech news, reviews and previews by subscribing to the Good Gear Guide newsletter.

Elinor Mills

PC World
Show Comments

Essentials

Microsoft L5V-00027 Sculpt Ergonomic Keyboard Desktop

Learn more >

Lexar® JumpDrive® S57 USB 3.0 flash drive

Learn more >

Mobile

Lexar® JumpDrive® S45 USB 3.0 flash drive 

Learn more >

Exec

Lexar® Professional 1800x microSDHC™/microSDXC™ UHS-II cards 

Learn more >

Audio-Technica ATH-ANC70 Noise Cancelling Headphones

Learn more >

HD Pan/Tilt Wi-Fi Camera with Night Vision NC450

Learn more >

Lexar® JumpDrive® C20c USB Type-C flash drive 

Learn more >

Budget

Back To Business Guide

Click for more ›

Most Popular Reviews

Latest News Articles

Resources

PCW Evaluation Team

Azadeh Williams

HP OfficeJet Pro 8730

A smarter way to print for busy small business owners, combining speedy printing with scanning and copying, making it easier to produce high quality documents and images at a touch of a button.

Andrew Grant

HP OfficeJet Pro 8730

I've had a multifunction printer in the office going on 10 years now. It was a neat bit of kit back in the day -- print, copy, scan, fax -- when printing over WiFi felt a bit like magic. It’s seen better days though and an upgrade’s well overdue. This HP OfficeJet Pro 8730 looks like it ticks all the same boxes: print, copy, scan, and fax. (Really? Does anyone fax anything any more? I guess it's good to know the facility’s there, just in case.) Printing over WiFi is more-or- less standard these days.

Ed Dawson

HP OfficeJet Pro 8730

As a freelance writer who is always on the go, I like my technology to be both efficient and effective so I can do my job well. The HP OfficeJet Pro 8730 Inkjet Printer ticks all the boxes in terms of form factor, performance and user interface.

Michael Hargreaves

Windows 10 for Business / Dell XPS 13

I’d happily recommend this touchscreen laptop and Windows 10 as a great way to get serious work done at a desk or on the road.

Aysha Strobbe

Windows 10 / HP Spectre x360

Ultimately, I think the Windows 10 environment is excellent for me as it caters for so many different uses. The inclusion of the Xbox app is also great for when you need some downtime too!

Mark Escubio

Windows 10 / Lenovo Yoga 910

For me, the Xbox Play Anywhere is a great new feature as it allows you to play your current Xbox games with higher resolutions and better graphics without forking out extra cash for another copy. Although available titles are still scarce, but I’m sure it will grow in time.

Featured Content

Latest Jobs

Don’t have an account? Sign up here

Don't have an account? Sign up now

Forgot password?