Elektrine lite

← Feed

@dangoodin@infosec.exchange

Post #3187086

2024-07-25 19:58 UTC

@ralfmaximus@mastodon.social You're missing the fact that the sole reason for Secure Boot is to protect against post-exploit attacks that infect the pre-boot firmware.

Replies (1)

  • @ralfmaximus@mastodon.social 2024-07-25 20:05

    @dangoodin@infosec.exchange Honest question, promise I'm not trolling: again, how would an attack in the wild occur using the compromised key? I've got Windows Defender, UAC, and Malwarebytes running. I try to install an infected firmware update via its exe. One or all 3 of those tools should intercept the attempt. If I ignore the warning(s) and proceed to install compromised firmware, that's on me at that point. Right?

    Open ##3187087