297
you are viewing a single comment's thread
view the rest of the comments
[-] palordrolap@fedia.io 4 points 2 days ago

What I've read just now is what I'd deliberately not gone looking for up to this point in case I found this out.

Linux and Windows happen to require that the executables that access that information be run with root privileges, but it looks like that's merely an affectation.

It seems that any old piece of software, without root or other privileges, can independently run the CPUID instruction that obtains a processor's serial number.

I do not like this one bit.

[-] phlegmy@sh.itjust.works 2 points 1 day ago

Supposedly only the pentium III returns serial info with CPUID though, and even then it can be disabled in the bios.

[-] frongt@lemmy.zip 1 points 1 day ago

Why not? Is that information considered sensitive? Personally I tend to avoid running untrustworthy programs outside of a sandbox or VM.

[-] WhyJiffie@sh.itjust.works 3 points 1 day ago* (last edited 1 day ago)

Personally I tend to avoid running untrustworthy programs outside of a sandbox or VM.

what does that mean? are you not running any programs at all? you cannot know just by looking at the name if a program reads such sensitive info. and its not unlikely that some developer figured it would be a good idea to include it in automatic crash reports

yes, this is sensitive information. its like your fingerprint, you cannot change it. I think its quite obvious. ~~web browsers~~ firefox is fighting to hide more and more that even indirectly could lead to identification. websites can't read this ID, this is just a comparison.

[-] Axolotl_cpp@lemmy.dbzer0.com 1 points 1 day ago

you cannot know just by looking at the name if a program reads such sensitive info.

I can know from the code ;P

[-] WhyJiffie@sh.itjust.works 1 points 4 hours ago

have you ever used Gentoo? if you do, you know how long it takes to build updated software from source code.

vetting all that, even just the changes would take a lot more time. and it's a constant effort.

[-] palordrolap@fedia.io 4 points 1 day ago

Are you a believer in the idea "They who have nothing to hide have nothing to fear"? Hint: You shouldn't be.

And do you know for certain that your sandboxes and VMs don't simply pass through the CPUID instruction? And if they don't, do they rotate their fake CPUIDs? And how often does that happen?

this post was submitted on 02 Oct 2026
297 points (97.7% liked)

Technology

88571 readers
2943 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related news or articles.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


founded 3 years ago
MODERATORS