06.04.2017 Views

Exploring Your System Deeper [with CHIPSEC] is Not Naughty

csw2017_ExploringYourSystemDeeper_updated

csw2017_ExploringYourSystemDeeper_updated

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Detecting Unexpected Firmware Modifications<br />

Check UEFI firmware image for unexpected modifications, e.g. added EFI executable binaries<br />

chipsec_main -m tools.uefi.whitel<strong>is</strong>t [-a check,,]<br />

Decodes UEFI firmware image and checks all EFI executable binaries<br />

against a specified l<strong>is</strong>t<br />

json<br />

JSON file <strong>with</strong> configuration of white-l<strong>is</strong>ted EFI executables<br />

fw_image Full file path to UEFI firmware image. If not specified, the<br />

module will dump firmware image directly from ROM

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!