Close Menu
  • Home
  • About
  • News
  • Awards
  • Media & Press
  • Video Podcasts
  • Magazines
  • Events
  • Contact
Facebook X (Twitter) Instagram
Gazet International – Global Magazine
AWARD NOMINATION
  • Home
  • About
  • News
  • Awards
  • Media & Press
  • Video Podcasts
  • Magazines
  • Events
  • Contact
You are at:Home » ESET Research Discovers UEFI Secure Boot Bypass Vulnerability
Press Release

ESET Research Discovers UEFI Secure Boot Bypass Vulnerability

Gazet InternationalBy Gazet InternationalJanuary 23, 20254 Mins Read
Facebook Twitter LinkedIn
Share
Facebook Twitter LinkedIn
  • ESET researchers discovered a new vulnerability, CVE-2024-7344, that allows actors to bypass UEFI Secure Boot on the majority of UEFI-based systems.

  • Exploitation of this vulnerability allows execution of untrusted code during system boot, enabling deployment of malicious UEFI bootkits.

  • The issue was fixed by affected vendors; the vulnerable binaries were revoked by Microsoft in the January 14, 2025, Patch Tuesday update

ESET researchers have discovered a vulnerability, affecting the majority of UEFI-based systems, that allows actors to bypass UEFI Secure Boot. This vulnerability, assigned CVE-2024-7344, was found in a UEFI application signed by Microsoft’s “Microsoft Corporation UEFI CA 2011” third-party UEFI certificate. Exploitation of this vulnerability can lead to the execution of untrusted code during system boot, enabling potential attackers to easily deploy malicious UEFI bootkits (such as Bootkitty or BlackLotus) even on systems with UEFI Secure Boot enabled, regardless of the operating system installed.

https://www.newsvoir.ae/images/article/image1/2425_ESET_UEFI_Secure.jpg

ESET Research discovers UEFI Secure Boot bypass vulnerability


ESET reported the findings to the CERT Coordination Center (CERT/CC) in June 2024, which successfully contacted the affected vendors. The issue has now been fixed in affected products, and the old, vulnerable binaries were revoked by Microsoft in the January 14, 2025, Patch Tuesday update.


The affected UEFI application is part of several real-time system recovery software suites developed by Howyar Technologies Inc., Greenware Technologies, Radix Technologies Ltd., SANFONG Inc., Wasay Software Technology Inc., Computer Education System Inc., and Signal Computer GmbH.


“The number of UEFI vulnerabilities discovered in recent years and the failures in patching them or revoking vulnerable binaries within a reasonable time window shows that even such an essential feature as UEFI Secure Boot should not be considered an impenetrable barrier,” says ESET researcher Martin Smolar, who discovered the vulnerability. “However, what concerns us the most with respect to the vulnerability is not the time it took to fix and revoke the binary, which was quite good compared to similar cases, but the fact that this isn’t the first time that such an obviously unsafe signed UEFI binary has been discovered. This raises questions of how common the use of such unsafe techniques is among third-party UEFI software vendors, and how many other similar obscure, but signed, bootloaders there might be out there.”


Exploitation of this vulnerability is not limited to systems with the affected recovery software installed, as attackers can bring their own copy of the vulnerable binary to any UEFI system with the Microsoft third-party UEFI certificate enrolled. Also, elevated privileges are required to deploy the vulnerable and malicious files to the EFI system partition (local administrator on Windows; root on Linux). The vulnerability is caused by the use of a custom PE loader instead of using the standard and secure UEFI functions LoadImage and StartImage. All UEFI systems with Microsoft third-party UEFI signing enabled are affected (Windows 11 Secured-core PCs should have this option disabled by default).The vulnerability can be mitigated by applying the latest UEFI revocations from Microsoft. Windows systems should be updated automatically. Microsoft’s advisory for the CVE-2024-7344 vulnerability can be found here. For Linux systems, updates should be available through the Linux Vendor Firmware Service.


For a more detailed analysis and technical breakdown of the UEFI vulnerability, check out the latest ESET Research blogpost “Under the cloak of UEFI Secure Boot: Introducing CVE-2024-7344” on WeLiveSecurity.com. Make sure to follow ESET Research on Twitter (today known as X) for the latest news from ESET Research.


About ESET
ESET provides cutting-edge digital security to prevent attacks before they happen. By combining the power of AI and human expertise, ESET stays ahead of known and emerging cyberthreats – securing businesses, critical infrastructure, and individuals. Whether it’s endpoint, cloud or mobile protection, our AI-native, cloud-first solutions and services remain highly effective and easy to use. ESET technology includes robust detection and response, ultra-secure encryption, and multifactor authentication. With 24/7 real-time defense and strong local support, we keep users safe and businesses running without interruption. An ever-evolving digital landscape demands a progressive approach to security: ESET is committed to world-class research and powerful threat intelligence, backed by R&D centers and a strong global partner network.

For more information, visit www.eset.com or follow us on LinkedIn, Facebook, and X.

Share. Facebook Twitter LinkedIn
Previous ArticlePadamjeet Sehrawat’s Inspiring Poetry Collection ‘Udaan’ Launched in Delhi​
Next Article Medlab Middle East Looks to the Future of Laboratories as the Market is Estimated to Reach USD473.84 Million by 2029

Related Posts

AIPL DreamCity Ludhiana Introduces Pickleball Courts, Enhancing Community Sports Culture​

May 16, 2025

Ready-to-Guide Entrepreneurs to Export to Dubai – Dhananjay Datar​

May 16, 2025

Padma Shri Awardee Sitanshu Yashaschandra Urges Graduates to Question Beliefs, Use Language with Sensitivity at Ahmedabad University’s 15th Convocation​

May 16, 2025
  • Facebook
  • Twitter
  • Instagram
  • YouTube
  • LinkedIn
Don't Miss

AIPL DreamCity Ludhiana Introduces Pickleball Courts, Enhancing Community Sports Culture​

Ready-to-Guide Entrepreneurs to Export to Dubai – Dhananjay Datar​

Padma Shri Awardee Sitanshu Yashaschandra Urges Graduates to Question Beliefs, Use Language with Sensitivity at Ahmedabad University’s 15th Convocation​

Max Financial Services reports 12% growth in consolidated revenue excluding Investment income in FY’25 rising to ₹32,620 crores; Axis Max Life Insurance’s Individual Adjusted First Year Premium grew 20%​

Recent Posts
  • AIPL DreamCity Ludhiana Introduces Pickleball Courts, Enhancing Community Sports Culture​
  • Ready-to-Guide Entrepreneurs to Export to Dubai – Dhananjay Datar​
  • Padma Shri Awardee Sitanshu Yashaschandra Urges Graduates to Question Beliefs, Use Language with Sensitivity at Ahmedabad University’s 15th Convocation​
  • Max Financial Services reports 12% growth in consolidated revenue excluding Investment income in FY’25 rising to ₹32,620 crores; Axis Max Life Insurance’s Individual Adjusted First Year Premium grew 20%​
  • Bisleri International, NBT & CEE Sign a Joint MoU to Launch Educational Book on Plastic Waste Management for Schools in 48 Languages​
Recent Comments
    Archives
    • May 2025
    • April 2025
    • March 2025
    • February 2025
    • January 2025
    • December 2024
    • November 2024
    • October 2024
    • September 2024
    • August 2024
    • July 2024
    • June 2024
    • May 2024
    • April 2024
    • March 2024
    • February 2024
    • January 2024
    • October 2023
    • September 2023
    • January 2021
    Categories
    • Banking
    • Blog
    • Business
    • Corporate
    • Editor's Column
    • Events
    • Executive Spotlight
    • Finance and Investing
    • Lifestyle
    • magazine
    • podcast
    • Press Release
    • Technology
    • World
    Meta
    • Log in
    • Entries feed
    • Comments feed
    • WordPress.org
    About

    GAZET INTERNATIONAL


    Gazet International Magazine is a global entity that works towards providing latest information and news updates of the world. It entraps latest stories in banking, finance, lifestyle and various beats of the world. We engage in recognizing and rewarding the global organizations for their achievements in various fields and deliver justice to the nominees with valued identification and recognition of companies that indulge in the Gazet Award Ceremony.

    Facebook X (Twitter) Instagram YouTube LinkedIn
    Categories
    • Banking
    • Blog
    • Business
    • Corporate
    • Editor's Column
    • Events
    • Executive Spotlight
    • Finance and Investing
    • Lifestyle
    • magazine
    • podcast
    • Press Release
    • Technology
    • World
    Latest posts
    Business

    Nvidia prepares a version of their new flagship AI chip for the Chinese market

    July 22, 2024
    Press Release

    Global Tech Leaders Converge in Ras Al Khaimah to Discuss Sustainable IT at Circular Computing’s Summit

    July 19, 2024
    Press Release

    Six Elements That Attract European Buyers to UAE Luxury Real Estate

    July 19, 2024
    Finance and Investing

    European stocks fall, global IT failure creates turmoil

    July 19, 2024
    Previous 1 … 568 569 570 571 572 … 731 Next
    Official Partner

    7ITS NEWS

    Copyright © 2025. Gazet International

    Type above and press Enter to search. Press Esc to cancel.