New UEFI Secure Boot Vulnerability Could Allow Attackers to Load Malicious Bootkits

Details have emerged about a now-patched security vulnerability that could allow a bypass of the Secure Boot mechanism in Unified Extensible Firmware Interface (UEFI) systems. The vulnerability, assigned the CVE identifier CVE-2024-7344 (CVSS score: 6.7), resides in a UEFI application signed by Microsoft's "Microsoft Corporation UEFI CA 2011" third-party UEFI certificate, according to a new

Posted from: Click here for the full article.

留言

此網誌的熱門文章

What Is Attack Surface Management?

Cisco Releases Urgent Patch to Fix Critical Flaw in Emergency Responder Systems

Meta Warns of FreeType Vulnerability (CVE-2025-27363) With Active Exploitation Risk