News Score: Score the News, Sort the News, Rewrite the Headlines

BombShell: The Signed Backdoor Hiding in Plain Sight on Framework Devices - Eclypsium | Supply Chain Security for the Modern Enterprise

UEFI shell vulnerabilities allow attackers to bypass Secure Boot One of our fears, as individuals who have spent years examining firmware security, is stumbling upon a vulnerability that reveals the fundamental flaws in our trust models. Recently, that fear became a reality when we conducted deeper research into signed UEFI shells and discovered what can only be described as signed backdoors on 200k laptops and desktops. UEFI vulnerabilities like this can raise the specter of BlackLotus and Boot...

Read more at eclypsium.com

© News Score  score the news, sort the news, rewrite the headlines