Eleven Vulnerable UEFI Shims Enable Secure Boot Bypass

Security researchers at ESET have identified 11 Microsoft-signed UEFI shim bootloaders that contain vulnerabilities allowing attackers to bypass Secure Boot. These flaws could enable the installation of persistent bootkits on a wide range of systems.
Why it matters
This vulnerability poses a significant security risk as it allows malicious code to execute before the operating system loads, potentially compromising entire systems.
Attackers could bypass UEFI Secure Boot on a wide range of systems thanks to 11 Microsoft-signed UEFI shim bootloaders carrying vulnerabilities that have remained buried for more than a decade, according to new findings from ESET.
The report is a technical summary of a cybersecurity vulnerability disclosure.
Get smarter about the news
Sign up free for a feed built around what you actually care about, Dive Deeper research on any story, and the full text of every article.
Create free accountAlready have an account? Sign in