Critical UEFI Secure Boot Bypass Vulnerability Discovered
ID: ce71cd02-1a9c-5886-b39b-3729b17ed4f5
STIX ID: report--ce71cd02-1a9c-5886-b39b-3729b17ed4f5
Feed Name: ThreatCluster
ESET researchers disclosed CVE-2024-7344, a vulnerability in multiple vendor-signed UEFI recovery applications that permits bypassing UEFI Secure Boot by using a custom PE loader to load unsigned UEFI binaries. The flaw enables execution of untrusted code in the early boot phase, risking persistent platform compromise; the issue was coordinated with CERT/CC and mitigated through Microsoft DBX revocations, and administrators are advised to update the UEFI Forbidden Signature Database.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
