Firmware ransomware is here

Firmware ransomware is here

Rapid7 cybersecurity expert Chrstiaan Beek has written proof-of-concept code for ransomware that can attack your CPU firmware – and warns of future threats that could lock your drive until a ransom is paid.

Google‘s Security Team previously identified a security vulnerability in AMD’s Zen 1 to Zen 4 CPUs that allows users to load unsigned microcode patches. It later emerged that AMD Zen 5 CPUs are also affected by the vulnerability. It can be fixed by a firmware update, but leaving a hole that allows the loading of unsigned microcode seems…like a very unfortunate laps of security.

Links:

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.