Thread Rating:
  • 1 Vote(s) - 5 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Watch researchers remotely brick a server by corrupting its BMC & UEFI firmware
#1
Quote:In a proof-of-concept video published today, security researchers from Eclypsium have shown that firmware attacks can be just as dangerous and damaging as infections with ransomware or disk-wiping malware.

Their proof-of-concept attack is aimed at servers that feature a Baseboard Management Controller (BMC), a chip-on-chip system that allows for remote system management operations.

The attack portrayed in the video requires an attacker to gain access to a server beforehand, but researchers argue this isn't a big issue in today's software landscape where almost any software product is affected by a remotely exploitable vulnerability, and enterprises are plagued by password reuse and default credentials.

Once an attacker has a foothold on a system, the Eclypsium team says they can use the Keyboard Controller Style (KCS) interface to interact with the BMC.

Source: https://www.zdnet.com/article/watch-rese...-firmware/
[-] The following 1 user says Thank You to silversurfer for this post:
  • harlan4096
Reply


Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
GFYI [Official] AIDA64 Extreme Mother's...
"What feature/s...jAcos — 12:18
GFYI [Official] EaseUS Todo Backup Home...
"Share feedback...jAcos — 12:09
Hotfix: Emsisoft Business Security, Ente...
Hotfix: Emsisoft B...harlan4096 — 08:58
AMD Ryzen 9050 “Strix Halo” specs leaked
AMD “Strix Halo” 120...harlan4096 — 08:56
Vivaldi 6.7 (3329.27)
Vivaldi Stable 6.7...harlan4096 — 08:40

[-]
Birthdays
Today's Birthdays
avatar (39)axylisyb
avatar (42)tukrublape
Upcoming Birthdays
avatar (26)akiratoriyama
avatar (46)Jerrycix
avatar (38)awedoli
avatar (80)WinRARHowTo
avatar (36)owysykan
avatar (47)beautgok
avatar (37)axuben
avatar (38)ihijudu
avatar (43)tiojusop
avatar (40)Damiennug
avatar (38)acoraxe
avatar (47)contjrat
avatar (42)knigiJow
avatar (44)1stOnecal
avatar (48)Mirzojap
avatar (34)idilysaju
avatar (38)GregoryRog
avatar (43)mediumog
avatar (38)odukoromu
avatar (44)Joanna4589

[-]
Online Staff
There are no staff members currently online.

>