LABScon24 Replay | PKfail: Supply-Chain Failures in Secure Boot Key Management
ID: e1f02c31-ef15-5062-82df-718cf64cd485
STIX ID: report--e1f02c31-ef15-5062-82df-718cf64cd485
Threat Score
This report summarizes a presentation on "PKfail," a UEFI firmware supply-chain vulnerability caused by vendors shipping default test Platform Keys (PK) in Secure Boot implementations; leaked test keys allow attackers to bypass Secure Boot and deploy persistent firmware bootkits (e.g., BlackLotus) across hundreds of affected device models, based on an extensive analysis of UEFI firmware images.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
