Wednesday, February 8, 2023
  • Login
No Result
View All Result
Atreju
  • Home
    • Home – Layout 1
    • Home – Layout 2
    • Home – Layout 3
    • Home – Layout 4
    • Home – Layout 5
  • World
  • News
  • SPORTS
  • Entertainment
  • Politics
  • Italy
  • Technology
  • Home
    • Home – Layout 1
    • Home – Layout 2
    • Home – Layout 3
    • Home – Layout 4
    • Home – Layout 5
  • World
  • News
  • SPORTS
  • Entertainment
  • Politics
  • Italy
  • Technology
No Result
View All Result
Atreju
No Result
View All Result
ADVERTISEMENT
Home Technology

MSI Secure Boot goes haywire for a whole host of motherboards

by Atreju
January 17, 2023
in Technology
0
Zero-day attack
0
SHARES
4
VIEWS
Share on FacebookShare on Twitter

The latest firmware update for MSI motherboards broke a major security feature, putting countless computers at risk of malware (opens in new tab) and other threats, a security expert has claimed.

Researcher Dawid Potocki discovered the recently-released firmware update version 7C02v3C changed the default Secure Boot setting on MSI motherboards, allowing the boot process to run even software that is unsigned, or that has had its signature changed due to modifications. 

In other words, software that would have otherwise been stopped from running due to being malicious, will now be allowed to start.

Changing the default settings

“I decided to setup Secure Boot on my new desktop with the help of sbctl. Unfortunately, I have found that my firmware was accepting every OS image I gave it, no matter if it was trusted or not,” Potocki wrote. “As I have later discovered on 2022-12-16, it wasn’t just broken firmware; MSI had changed their Secure Boot defaults to allow booting on security violations(!!).”

The firmware setting that was changed with the latest patch was “Image Execution Policy”, which is now set to “Always Execute” by default. According to Potocki, users need to set the Execution Policy to “Deny Execute” for “Removable Media”, and “Fixed Media”. That way, only signed software will be allowed to run at boot. 

Potocki further claimed MSI never documented the change, but after a bit of digging, discovered that almost 300 models were affected, including many Intel and AMD-based motherboards. Even some brand new devices are affected, he added. 

Secure Boot is MSI’s security system built to prevent UEFI malware, such as bootkits and rootkits. This type of malware is particularly dangerous as even wiping the operating system does not remove it from the device.

MSI is currently silent on the matter, but should the company respond to media inquiries, we’ll update the article accordingly. 

Via: BleepingComputer (opens in new tab)

Atreju

Atreju

Next Post
Dopo Matteo Messina Denaro, i latitanti italiani in circolazione

Dopo Matteo Messina Denaro, i latitanti italiani in circolazione

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recommended

Diablo Immortal team plans stash expansion and “all-new gameplay”

Diablo Immortal team plans stash expansion and “all-new gameplay”

3 weeks ago
‘Rick and Morty’, licenziato il co-creatore e doppiatore Justin Roiland dopo l’accusa di violenza domestica

‘Rick and Morty’, licenziato il co-creatore e doppiatore Justin Roiland dopo l’accusa di violenza domestica

2 weeks ago

Popular News

    Connect with us

    Newsletter

    Lorem ipsum dolor sit amet, consectetuer adipiscing elit. Aenean commodo ligula eget dolor.
    SUBSCRIBE

    Category

    • Business
    • Entertainment
    • Fashion
    • food
    • Games
    • Gaming
    • Health
    • Italy
    • Lifestyle
    • Movie
    • Music
    • National
    • News
    • Politics
    • Science
    • SPORTS
    • Tech
    • Technology
    • Travel
    • Uncategorized
    • WORLD

    Site Links

    • Log in
    • Entries feed
    • Comments feed
    • WordPress.org

    About Us

    We bring you the best Premium WordPress Themes that perfect for news, magazine, personal blog, etc. Check our landing page for details.

    • About
    • Advertise
    • Careers
    • Contact

    © 2023 JNews - Premium WordPress news & magazine theme by Jegtheme.

    No Result
    View All Result
    • Home
    • Politics
    • World
    • Business
    • Science
    • National
    • Entertainment
    • Gaming
    • Movie
    • Music
    • Sports
    • Fashion
    • Lifestyle
    • Travel
    • Tech
    • Health
    • Food

    © 2023 JNews - Premium WordPress news & magazine theme by Jegtheme.

    Welcome Back!

    Login to your account below

    Forgotten Password?

    Create New Account!

    Fill the forms below to register

    All fields are required. Log In

    Retrieve your password

    Please enter your username or email address to reset your password.

    Log In