cognitive cybersecurity intelligence

News and Analysis

Search

BootKitty UEFI malware exploits LogoFAIL to infect Linux systems

The ‘Bootkitty’ Linux UEFI bootkit, an in-development malware primarily targeting specific Ubuntu versions, exploits the LogoFAIL flaw to attack computers running vulnerable firmware. Bootkitty uses shellcode within BMP files to bypass Secure Boot protections and inject rogue certifications into the system. The malware can potentially infect any unpatched device. Binarly, a firmware security firm that discovered LogoFAIL, emphasizes that fixes need to be deployed to minimise impressions from such vulnerabilities.

Source: www.bleepingcomputer.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts