Earlier quoted context omitted.
I thought that too and then got terrified of the idea that someone trusting an HTTP connection writing (parts of) a damn BIOS. This would be worse than anything. Actually I also don't like BIOS allowing to be flashed from within the OS for convenience. So your computer gets owned and you can't trust your motherboard anymore.
I hate this idea as it usually means that you have to run Windows to upgrade BIOS...
Solution? New BIOS firmware. Problem? Can only update via Windows binary.
I wish I was joking, but quite a few HP laptops can only be updated via Windows binaries...