UEFI Secure Boot: Not so secure
ID: 08ac279e-9801-50aa-87d4-071566d6a27b
STIX ID: report--08ac279e-9801-50aa-87d4-071566d6a27b
Feed Name: WeLiveSecurity (ESET Research)
Threat Score
**UEFI Secure Boot: Not so secure** — ESET researchers disclosed CVE-2024-7344, a vulnerability in a UEFI application used by seven system recovery programs that could allow attackers to bypass UEFI Secure Boot and install malicious UEFI bootkits (such as Bootkitty or BlackLotus) on unpatched systems, enabling execution of untrusted code at system startup even when Secure Boot is enabled.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
