Keep your eyes on these

VERY IMPORTANT

Security Articles

RSS

MoonBounce: the dark side of UEFI firmware

released on 2022-01-21 @ 10:46:39 AM
In the last year, there have been several public accounts on the ongoing trend of UEFI threats. Notable examples include the UEFI bootkit used as part of the FinSpy surveillance toolset, the ESPectre bootkit, or a little-known threat activity that was discovered within in the Middle East, using a UEFI bootkit on its own. The common denominator of those three cases is the fact that the UEFI components targeted for infection reside on the ESP (EFI System Partition), a storage space designated for some UEFI components.