Hi, I am writing this from a Thinkpad T420 with Coreboot flashed and the Intel Management Engine disabled!
recently there was a lot of work done regarding disabling/neutralizing the ME. Have a look at this: http://blog.ptsecurity.com/2017/08/disabling-intel-me.html https://github.com/corna/me_cleaner And of course Libreboot. And yes, the Intel ME has a lot of access to the system and could/can do more than you want to. It even runs a whole operating system based on Minix. http://blog.ptsecurity.com/2017/04/intel-me-way-of-static-analysis.html Regards, Aaron -- Web: https://drkhsh.at/ or http://drkhsh5rv6pnahas.onion/ Gopher: gopher://drkhsh.at or gopher://drkhsh5rv6pnahas.onion GPG: 0x09e71697435bf54b Fingerprint: 57D2 5F2C 9402 A6BD FEF9 B3B6 09E7 1697 435B F54B