Critical Firmware Vulnerability in Gigabyte Systems Exposes ~7 Million Devices

Wed, 31 May 2023 18:52:00
0 minutes, 24 seconds
Dan

Cybersecurity researchers have found "backdoor-like behavior" within Gigabyte systems, which they say enables the UEFI firmware of the devices to drop a Windows executable and retrieve updates in an unsecure format.

Firmware security firm Eclypsium said it first detected the anomaly in April 2023....

Experts Uncover New 'CosmicStrand' UEFI Firmware Rootkit Used by Chinese Hackers

"The rootkit is located in the firmware images of Gigabyte or ASUS motherboards, and we noticed that all these images are related to designs using the H81 chipset," Kaspersky researchers said in a new report published today. "This suggests that a common vulnerability may exist that allowed the attac...