12.07.2015 Views

DE MYSTERIIS DOM JOBSIVS Mac EFI Rootkits - Reverse ...

DE MYSTERIIS DOM JOBSIVS Mac EFI Rootkits - Reverse ...

DE MYSTERIIS DOM JOBSIVS Mac EFI Rootkits - Reverse ...

SHOW MORE
SHOW LESS
  • No tags were found...

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

DOING BAD THINGS WITH <strong>EFI</strong>ATTACKING WHOLE-DISK ENCRYPTION‣ Steal the AES key‣ Hook LoadImage() function in Boot Services‣ Patch the bootloader when it is loaded‣ Shouldn’t be tooooo hard...(thanks for the debug logging, Apple)(also, that’s my one token IDA screenshot)De Mysteriis Dom Jobsivs - Black Hat USA2012

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!