08.12.2015 Views

Fix it yourself

09_Schlej

09_Schlej

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Attack Vectors: BIOS Setup 17<br />

- can control SPI flash access<br />

- controls SecureBoot<br />

- settings are stored in NVRAM variable called “Setup”, which can<br />

be changed from UEFI Shell (always) or any UEFI-bootable OS<br />

(if the variable has RT flag)<br />

- protected by password, which can be stored using a weak<br />

algor<strong>it</strong>hm, removed w<strong>it</strong>h “factory password” or reset by PC vendor

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!