Get a Pentest and security assessment of your IT network.

News

Dozens of Security Flaws Discovered in UEFI Firmware Used by Several Vendors

As many as 23 new high severity security vulnerabilities have been disclosed in different implementations of Unified Extensible Firmware Interface (UEFI) firmware used by numerous vendors. The vulnerabilities reside in Insyde Software’s InSydeH2O UEFI firmware. The flaws could allow a malicious actor to run arbitrary code with SMM permissions, a special-purpose execution mode in x86 processors that handles power management, hardware configuration, thermal monitoring, and other functions. The weaknesses can also be chained together to bypass security features and install malware in a manner that survives operating system re-installations and achieve long-term persistence.”]

Source: https://thehackernews.com/2022/02/dozens-of-security-flaws-discovered-in.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

SEA has stolen invoices that shows Microsoft charges FBI for user data

News

Greek police arrested a man running the BTC-e Bitcoin exchange to launder more than US$4bn worth of the Bitcoin