Dmytro Oleksiuk has apparently found a new Lenovo/SMM exploit, not much details yet:
I found very interesting 0day vulnerability (looks rather like backdoor) in ThinnkPads, arbitrary SMM code execution pic.twitter.com/MxLHU1ciIB
— Dmytro Oleksiuk 💥 d_olex@mastodon.social (@d_olex) June 1, 2016
It also leads to flash write protection bypass, SecureBoot bypass, Windows VSM bypass and other bad things. Details soon 🙂
— Dmytro Oleksiuk 💥 d_olex@mastodon.social (@d_olex) June 1, 2016
