New NIST Guidance Addresses BIOS Vulnerabilities: Protecting Servers from Remote Attacks. The National Institute of Standards and Technologies has published new guidance to mitigate the threat. The guidance is designed to help mitigate remote attacks but wouldn’t necessarily stop dedicated attackers who try to tamper with BIOS in systems they have “unfettered physical access to,” says Andrew Regenscheid. In 2011, the Mebromi rootkit attempted to insert malware in the BIOS that would continue to re-infect systems, even after clearing the malicious code with anti-virus software, reinstalling the operating system.”]
Source: https://www.bankinfosecurity.com/protecting-servers-from-remote-attacks-a-7313