Security tunnel vision?

2 replies [Last post]
IBM1130
Offline
Joined: 09/24/2020

I am window shopping for Linux laptops. Lenovo Thinkpads are a popular choice because of the ability to run Libreboot on certain processors. But is Intel Management Engine really the biggest threat? In my former job (many years ago now), I was involved with IT security. At the time, Lenovo laptops were essentially banned from certain govt facilities. There were whispers about things like undocumented circuits concealed within multi-layer circuit boards. I suppose binary blobs could also have been an issue.

Years have now passed, but the suspicion remains. Recently, the US state of Georgia has banned Lenovo from state purchasing. https://finance.gatech.edu/2025-07/lenovo-statewide-contracts-suspended

So it is a bit ironic that Thinkpad T480 laptops, which are now popular as Libreboot machines, would be banned by government authorities as a security threat. Are proponents of Libreboot suffering from tunnel vision in thinking that used Lenovo machines are fine, but US-made machines are bad because of Intel Management Engine? What do you think?

egon
Offline
Joined: 11/07/2025

The ban is most likely due to (geo-)political reasons, being Lenovo a Chinese company.

Zoma
Offline
Joined: 11/05/2024

IF it has surveillance of any kind, it should be banned if it cannot be removed.

Country should absolutely not matter if there is spyware.

Anyone who says otherwise is giving a cop-out.

Btw, t480 is the best libreboot laptop on the market currently or t480s probably

Otherwise I recommend t440p or X230 as canoeboot devices if you want something RYF level freedom.