Microsoft has released a fix for a Secure Boot bypass vulnerability that allowed threat actors to deploy the BlackLotus bootkit (opens in new tab) to target endpoints – however, the update will be sitting idly on computers for months before it actually gets used, as its application is somewhat complicated.
The original vulnerability is tracked as CVE-2022-21894, and that one was patched in early 2023. However, hackers soon found ways to work around the patch and still deploy BlackLotus on Windows 10, Windows 11, and multiple Windows Server versions. Hence, CVE-2023-24932 was addressed earlier this week.
Author Profile
Latest entries
- SkillsWednesday, 11 December 2024, 10:00Mastering the Art of Golf Practice With The right equipment and mental attitude
- LifeTuesday, 10 December 2024, 15:17Tips to Stress-Free Emigration
- Social MediaTuesday, 10 December 2024, 10:00The Changing Landscape of Academic Social Media
- BusinessTuesday, 10 December 2024, 9:00The Advantages of Collaborating with an SEO Agency for Technology and AI Enterprises