Shining a light on UEFI – the hidden memory space being exploited in attacks

Network Security - Tập 2021 - Trang 14-17 - 2021
Connor Morley1
1F-Secure Countercept

Tóm tắt

In early October 2020, it was reported that a threat actor group associated with China had been targeting several businesses with links to North Korea. 1 Such nation-state activity has become so commonplace that this would normally be little more than background noise on a typical Monday in cyber security. Except for one difference – the threat actor appears to have exploited a vulnerability that has, until now, been largely theoretical.

Tài liệu tham khảo

Eduard Kovacs ‘China-linked hackers used UEFI malware in North Korea-themed attacks’; 5 Oct 2020: Security Week> www.securityweek.com/china-linked-hackers-used-uefi-malware-north-korea-themed-attacks accessed December 2020