CVE-2017-5689 Proof-of-Concept exploit
Switch branches/tags
Nothing to show
Clone or download
Fetching latest commit…
Cannot retrieve the latest commit at this time.
Failed to load latest commit information. Add Jul 27, 2017 Initial project version Jul 27, 2017

Intel AMT authentication bypass example

This is a Proof-of-Concept code that demonstrates the exploitation of the CVE-2017-5689 vulnerability.

It is essentialy a mitmproxy script that simply blanks an Authorization header "response" field.

Example usage:

mitmdump -p 8080 -dd --no-http2 -s