Why though? Not a single reason mentioned in post about why would it be better than whatever stock BIOS the laptop is shipped with.
Why though? Not a single reason mentioned in post about why would it be better than whatever stock BIOS the laptop is shipped with.
Thanks to Intel, who has invented the completely unnecessary System Management Mode, to compensate for the laziness of Microsoft, who could not be bothered to update MS-DOS and Windows with some features required in modern computers, now the BIOS has the ability to do whatever it wants on your computer, without this being detectable by the owner.
Hopefully the BIOS writers do not abuse this, and the many problems caused by BIOSes are due to unintentional bugs and not due to malice, but it would still better to be certain that your firmware does not do anything nefarious.
When debugging hardware problems, it is also much simpler when you are certain about what the computer really does, instead of not knowing whether the BIOS takes control when certain hardware events happen, overriding any policies that you may try to implement in your operating system.
Replacing the proprietary BIOS still does not provide complete control over what you own, as there are auxiliary CPUs with their own agenda, but it is still much closer to full control than when you do not know what the BIOS does.
Unfortunately, they have. Multiple examples from the excellent Cathode Ray Dude:
https://www.youtube.com/watch?v=q5M0TwnkWUM https://www.youtube.com/watch?v=ssob-7sGVWs
This can be confusing on HN, I know.
Reading https://libreboot.org/#why-use-libreboot might provide further enlightenment.
Yes, if you live and organize your life around things that are unlikely to happen to you, but only because they've happened ONCE to someone else, typically a high value target by state actors, that's called paranoia.
Most people are not gonna be targeted via BIOS hacks. From state actors to online scammers they all have easier ways to getting your data remotely.
This is not really true:
https://www.techdirt.com/articles/20150812/11395231925/lenov...
Normal people don't live in constant fear daily over something that happened once and caused no losses.
As far as I'm aware, it has less functionality than the OEM, so you use it to _remove_ features (good and/or bad).
Aside from that, I suppose it means you can run a more up to date firmware if yours is no longer maintained, but I'm not sure what that means in practical terms.
There's also the "hyper paranoid" fork "canoeboot" which has no proprietary blobs, and presumably _even less_ functionality.
The short answer is; if you don't know why you want it or need it, you probably don't.
Lenovo does have a history with installing a very obvious spyware rootkit on their consumer PCs[0].
[0]https://support.lenovo.com/us/en/product_security/ps500035-s...
1. Firmware contains bugs. Old proprietary firmware tends to not get fixes. If you switch to an open source version, you can get the bugs fixed.
(Edit) 1.a. Old proprietary firmware also doesn't tend to get new features, and open source replacements can cover that. (eg. booting over HTTP(S) or security features to help against Evil Maid attacks)
2. Libreboot claims to be faster to boot than the vendor firmware. Depending on the particular device/firmware, that wouldn't surprise me at all.
I suppose if nothing else, you can run a more up to date firmware if the vendor stopped supporting yours, but I have no idea what that means in a practical sense.
If I weren't using binary blobs in the firmware, I think I would have more trouble, but that is Canoeboot to my knowledge, not Libreboot. ^^