This bootkit has been used to backdoor Windows devices for almost a decade
This bootkit has been used to backdoor Windows devices for almost a decade Only the second-known real-world UEFI bootkit When you purchase through links on our site, we may earn an affiliate commission.Here’s how it works. Cybersecurityresearchers have found a previously undocumented Unified Extensible Firmware Interface (UEFI) bootkit, which has found a neat way to bypass the SecureBoot protections. In their thorough breakdown of the bootkit, dubbed ESPecter, theESETresearchers who found it, note that themalwareloads its own unsigned driver to bypass Windows Driver Signature Enforcement (WDSE) and dwell permanently inside the EFI System Partition (ESP) of compromised devices....