The cybersecurity analysts at HP have recently revealed 16 high-severity UEFI firmware bugs in millions of HP devices. And by exploiting these vulnerabilities a threat actor can gain high privileges on the affected devices, and not only that even also allow the attacker to evade AV tools and remain undetectable.
All these bugs have affected multiple HP models from different segments like:-
While these 16 high-severity UEFI firmware bugs were discovered by the security experts at Binarly security firm.
Here’s what the Founder and CEO of Binarly, Alex Matrosov stated:-
“Binarly believes that the lack of a knowledge base of common firmware exploitation techniques and primitives related to UEFI firmware makes these failures repeatable for the entire industry. We are working hard to fill this gap by providing comprehensive technical details in our advisories. This knowledge base is crucial for developing effective mitigations and defense technologies for device security”
After the discovery of these severe vulnerabilities, Binarly is collaborated with several security teams including HP’s and CERT/CC’s to understand the impact and scope for each of the vulnerabilities to mitigate them and protect the enterprise infrastructures globally.
Here we have listed all the 16 high-severity UEFI firmware bugs below:-
By exploiting these above-mentioned security flaws, an attacker can perform:-
Apart from this, the consequences of third-party risks from known vulnerabilities are commonly undervalued by several device manufacturers and firmware development companies.
But, the current discovery and data depict that the scenario is completely different from the assumed one. As there are many vendors who have not yet patched several know vulnerabilities.
You can follow us on Linkedin, Twitter, Facebook for daily Cybersecurity and hacking news updates.
The QSC Loader service DLL named "loader.dll" leverages two distinct methods to obtain the path…
Cybercriminals are exploiting the recent critical LDAP vulnerabilities (CVE-2024-49112 and CVE-2024-49113) by distributing fake proof-of-concept…
A NonEuclid sophisticated C# Remote Access Trojan (RAT) designed for the.NET Framework 4.8 has been…
Fraudsters in the Middle East are exploiting a vulnerability in the government services portal. By…
Juniper Networks has disclosed a significant vulnerability affecting its Junos OS and Junos OS Evolved…
CrowdStrike, a leader in cybersecurity, uncovered a sophisticated phishing campaign that leverages its recruitment branding…