News

Latest news about B2B cyber security >>> PR agencies: add us to your mailing list - see contact! >>> Book an exclusive PartnerChannel for your news!

Red Alert for Windows 11: Bootkit bypasses UEFI Secure Boot

According to ESET, even the new Windows 11 with its UEFI Secure Boot security system is not safe from the "BlackLotus" boot kit. The bootkit is already active in the wild and is also actively offered in hacker forums.​​​​​​​ Red alert for Windows users: ESET researchers have identified a bootkit that contains key security features of UEFI Secure Boot - a security system of Windows - able to avoid. Even a completely up-to-date Windows 11 system with activated Secure Boot does not pose a problem for the malware. Due to the functionality of the boot kit and its individual characteristics, the experts…

Read more

MoonBounce: Firmware bootkit more elusive and persistent
MoonBounce: Firmware bootkit more elusive and persistent

Kaspersky have discovered the third case of a UEFI firmware bootkit “in the wild”. The MoonBounce bootkit is more elusive and persistent than its predecessors. The campaign is credited to well-known Chinese-speaking Advanced Persistent Threat (APT) actor APT41. Kaspersky security researchers have discovered another firmware bootkit. The malicious implant, dubbed 'MoonBounce', is hidden in computers' Unified Extensible Firmware Interface (UEFI) firmware – an essential part of computers. This is located in the SPI Flash, a memory component outside of the hard disk. Such implants are notoriously difficult to remove and have limited visibility for security products. UEFI Firmware Bootkit…

Read more

Industrial espionage: ESET exposes dangerous UEFI boot kit
Eset_News

ESPecter comes through the back door and bypasses classic virus protection solutions. ESET researchers have discovered a new form of UEFI malware. The new type of malware embeds itself in the EFI system partition (ESP). With ESPecter, the experts at the European IT security manufacturer have discovered a so-called UEFI boot kit that bypasses the Windows driver signature and can load its own unsigned driver, which makes spying activities much easier. The current boot kit is a further development of the UEFI malware previously discovered by ESET. ESET security solutions with integrated UEFI scanners protect private and company computers from this possible weak point. ESPecter has been active since 2012 ...

Read more