RnD Research Lab

Cyber Security => IT News => Topic started by: ixsky on

Title: LogoFAIL: UEFI Vulnerabilities Expose Devices to Stealth Malware Attacks
Post by: ixsky on
LogoFAIL: UEFI Vulnerabilities Expose Devices to Stealth Malware Attacks

The Unified Extensible Firmware Interface (UEFI) code from various independent firmware/BIOS vendors (IBVs) has been found vulnerable to potential attacks through high-impact flaws in image parsing libraries embedded into the firmware.
The shortcomings, collectively labeled LogoFAIL by Binarly, "can be used by threat actors to deliver a malicious payload and bypass Secure Boot, Intel

Source: LogoFAIL: UEFI Vulnerabilities Expose Devices to Stealth Malware Attacks (https://thehackernews.com/2023/12/logofail-uefi-vulnerabilities-expose.html)