12.07.2015 Views

DE MYSTERIIS DOM JOBSIVS Mac EFI Rootkits - Reverse ...

DE MYSTERIIS DOM JOBSIVS Mac EFI Rootkits - Reverse ...

DE MYSTERIIS DOM JOBSIVS Mac EFI Rootkits - Reverse ...

SHOW MORE
SHOW LESS
  • No tags were found...

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

<strong>EFI</strong> ARCHITECTURE‣ Tables - pointers to functions & <strong>EFI</strong> data‣ Runtime services table‣ Functions available during pre-boot & while OS is running‣ Time services‣ Virtual memory - converting addresses from physical‣ Resetting system‣ Capsule management‣ Variables (we will use this)‣ NVRAM on the <strong>Mac</strong> - boot device is stored here‣ Configuration table‣ Pointers to data structures for access from OS‣ Custom runtime servicesTERMINOLOGYDe Mysteriis Dom Jobsivs - Black Hat USA2012

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!