Post #3187086
2024-07-25 19:58 UTC
@ralfmaximus@mastodon.social
You're missing the fact that the sole reason for Secure Boot is to protect against post-exploit attacks that infect the pre-boot firmware.
Replies (1)
-
@ralfmaximus@mastodon.social 2024-07-25 20:05
@dangoodin@infosec.exchange Honest question, promise I'm not trolling: again, how would an attack in the wild occur using the compromised key? I've got Windows Defender, UAC, and Malwarebytes running. I try to install an infected firmware update via its exe. One or all 3 of those tools should intercept the attempt. If I ignore the warning(s) and proceed to install compromised firmware, that's on me at that point. Right?