Earlier quoted context omitted.
.
What's your point? Is it that exploit developers are not compensated financially for their work? Exploit developers should find a better business model than their current one. This guy was able to take freely available exploit knowledge and monetize it. If the parties responsible for creating the exploit feel they have some sort of IP claim against them, they should sue. If exploit developers wish to release exploit…
After CIA leak, Intel Security releases detection tool for EFI rootkits
31–40 of 61 posts
Re: After CIA leak, Intel Security releases detection tool for EFI rootkits
#32Earlier quoted context omitted.
Of all the attacks a nation state could do, surely finding a few talented people to get PhDs in the appropriate fields and go to work at Intel and collect a paycheck along with a nice stipend from the nation state is likely among the easiest.
Probably easier to find an existing employee with financial problems and offer a duffel bag of cash to plug in a USB stick for 30 seconds.
Re: After CIA leak, Intel Security releases detection tool for EFI rootkits
#33Earlier quoted context omitted.
Of all the attacks a nation state could do, surely finding a few talented people to get PhDs in the appropriate fields and go to work at Intel and collect a paycheck along with a nice stipend from the nation state is likely among the easiest.
Probably easier to find an existing employee with financial problems and offer a duffel bag of cash to plug in a USB stick for 30 seconds.
Re: After CIA leak, Intel Security releases detection tool for EFI rootkits
#34Nice try CIA and Intel, but I'm not falling for this.
Re: After CIA leak, Intel Security releases detection tool for EFI rootkits
#35Re: After CIA leak, Intel Security releases detection tool for EFI rootkits
#36Earlier quoted context omitted.
.
What's your point? Is it that exploit developers are not compensated financially for their work? Exploit developers should find a better business model than their current one. This guy was able to take freely available exploit knowledge and monetize it. If the parties responsible for creating the exploit feel they have some sort of IP claim against them, they should sue. If exploit developers wish to release exploit…
Re: After CIA leak, Intel Security releases detection tool for EFI rootkits
#37Re: After CIA leak, Intel Security releases detection tool for EFI rootkits
#38https://en.wikipedia.org/wiki/System_Management_Mode#Problem...
That in combination with the Management Engine are ways in which people have been disowned of their own machines.
Re: After CIA leak, Intel Security releases detection tool for EFI rootkits
#39[CHIPSEC] Modules failed 1: [-] FAILED: chipsec.modules.common.uefi.s3bootscript
Re: After CIA leak, Intel Security releases detection tool for EFI rootkits
#40What does it mean to get this? https://s.ave.zone/066.png [CHIPSEC] Modules failed 1: [-] FAILED: chipsec.modules.common.uefi.s3bootscript
-- clarification
Technically all it means, if the error is as advertised, is that the uefi bootscript failed to match. Now, it could be as simple as that UEFI was customized by a vendor. Or it could be something less innocent.