松尾和树_你已经被黑了如果你的UEFI OROM中有一个后门怎么办.pdf

编号:175537 PDF 48页 2.88MB 下载积分:VIP专享
下载报告请您先登录!

松尾和树_你已经被黑了如果你的UEFI OROM中有一个后门怎么办.pdf

1、#BHUSA BlackHatEventsYouve AlreadyYouve Already BeenBeen HackedHackedWhat if There Is a Backdoor in Your UEFI OROM?What if There Is a Backdoor in Your UEFI OROM?Kazuki Matsuo(InfPCTechStack)2024/8/8 South Seas CD,Level 3#BHUSA BlackHatEventsWhoami-Kazuki Matsuo(InfPCTechStack)Title:Security Research

2、erAffiliation:FFRI Security,Inc&Waseda University(This study was done during my masters degree)Interests:UEFI(Negative Rings)Trusted ComputingWindows Kernel#BHUSA BlackHatEventsContributorsYuki Mogi Security Researcher FFRI Security,Inc Recently interested in security observability Active in MWS,an

3、academic cybersecurity community in Japan.Koh M.Nakagawa(tsunek0h)Security Researcher FFRI Security,Inc Vulnerability Research on macOS/iOS Black Hat EU 2020/Asia 2023,CODE BLUE(2021,2023)Tatsuya Mori(valdzone)Professor Waseda University Autonomous vehicle security https:/seclab.jp#BHUSA BlackHatEve

4、ntsUEFI BIOS BIOS:System firmware that initializes hardware and boots the OS.UEFI:Standard for BIOS and defines the boot phases shown in the right figure.DXE:The phase where most devices are abstracted by multiple DXE modules/drivers.UEFI Protocol:Interface for accessing the device produced in the D

5、XE phase.(e.g.HttpProtocol,SimpleFileSystemProtocol)Runtime DXE modules:Some DXE modules persist in memory during runtime.(Most DXE modules are unloaded before OS boot)#BHUSA BlackHatEventsOROM(aka Option ROM,PCI Expansion ROM,XROM)Contains DXE drivers that initialize the device.Present both in exte

6、rnal and internal devices Often present in network cards,storage devices,graphic cards,and adapters.DXE drivers in OROM get loaded at PCI enumeration phase(pretty early in DXE).Legacy BIOS OROM and UEFI OROM is different.This talk is about UEFI OROM.OROM OROM#BHUSA BlackHatEventsThis Talk is about I

友情提示

1、下载报告失败解决办法
2、PDF文件下载后,可能会被浏览器默认打开,此种情况可以点击浏览器菜单,保存网页到桌面,就可以正常下载了。
3、本站不支持迅雷下载,请使用电脑自带的IE浏览器,或者360浏览器、谷歌浏览器下载即可。
4、本站报告下载后的文档和图纸-无水印,预览文档经过压缩,下载后原文更清晰。

本文(松尾和树_你已经被黑了如果你的UEFI OROM中有一个后门怎么办.pdf)为本站 (张5G) 主动上传,三个皮匠报告文库仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对上载内容本身不做任何修改或编辑。 若此文所含内容侵犯了您的版权或隐私,请立即通知三个皮匠报告文库(点击联系客服),我们立即给予删除!

温馨提示:如果因为网速或其他原因下载失败请重新下载,重复下载不扣分。
客服
商务合作
小程序
服务号
折叠