128: New UEFI Firmware Vulnerability Exposes Motherboards to Pre-Boot DMA Attacks

Recent research has uncovered a critical UEFI firmware vulnerability affecting popular motherboards from ASUS, Gigabyte, MSI, and ASRock. This flaw permits Direct Memory Access (DMA) attacks via malicious hardware, enabling adversaries to bypass standard early-boot memory protections before the operating system loads.

As the threat targets the pre-boot environment, a wide range of systems are exposed. IT professionals are advised to regularly update firmware, disable non-essential BIOS peripherals, and enforce trusted hardware control, especially in enterprise settings. Treat firmware as a component requiring ongoing vigilance to maintain robust defences. With attackers advancing into the hardware layer, both strong manufacturer mitigation and proactive IT management are essential.

New UEFI Firmware Vulnerability Exposes Motherboards to Pre-Boot DMA Attacks

Posted in 128