ReversingLabs: Breaking the UEFI firmware Authenticode security model

Blog 8 in series: Digital Certificates – Models for Trust and Targets for Misuse

Issue #2: Validation of signed UEFI drivers and applications

https://blog.reversinglabs.com/blog/rocking-the-foundations-of-a-trust-based-digital-code-signing-system

https://blog.reversinglabs.com/blog/breaking-uefi-firmware-authenticode-security-model

Leave a Reply

Please log in using one of these methods to post your comment:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out /  Change )

Google photo

You are commenting using your Google account. Log Out /  Change )

Twitter picture

You are commenting using your Twitter account. Log Out /  Change )

Facebook photo

You are commenting using your Facebook account. Log Out /  Change )

Connecting to %s