FANCY BEAR UEFI rootkit accidently leaks

tempnexus

City 17 Rep
Premium Member
Intermediate User
Beginner User
General User
Newly Registered
Jul 31, 2015
3,538
3,600
108
DMV
#1

sdrawkcaB

sdrawkcaB|Backwards
Premium Member
Advanced User
Intermediate User
Beginner User
General User
Newly Registered
Mar 6, 2018
2,208
3,756
goo.gl
#2

tempnexus

City 17 Rep
Premium Member
Intermediate User
Beginner User
General User
Newly Registered
Jul 31, 2015
3,538
3,600
108
DMV
#4
Good read. This is nasty stuff. Theory becomes reality. I wonder if there is a way to continually check for this. Perhaps UEFI images will be signed and the signatures retrievable online such as is done with Certificates in Public Key Infrastructure via OSCP?

Yeah secure boot