Named “Bootkitty”, the first UEFI bootkit targeting Linux systems has been detected by ESET researchers. Operating before the system’s boot process begins enables Bootkitty to evade detection by security tools. Despite Bootkitty currently only posing a threat to certain Ubuntu distributions and being unsuitable for extensive deployment, its existence represents a significant advancement in UEFI bootkit threats.
Found in the wild: The world’s first unkillable UEFI bootkit for Linux
Security firm ESET has found the first known example of a Linux UEFI bootkit, a type of malware that infects the Unified Extensible Firmware Interface.