Paul's Security Weekly (Video)

The Stakes Are Raised When Protecting the Foundation of Computing - Scott Scheferman - PSW #705


Listen Later

With Eclypsium researchers' discovery of BIOSDisconnect and their upcoming talk and demo at DefCon 29 upon us, the stakes have never been higher when it comes to protecting the foundation of computing at the firmware level. A feature meant to make updating and protecting the firmware easier for users (BIOSConnect) ends up exposing the BIOS to being bricked or implanted with malicious code operating at the highest privilege. Yet another example of the significant vulnerabilities that exist at the firmware level that attackers have been eyeing of late.

Segment Resources:

https://defcon.org/html/defcon-29/dc-29-speakers.html#shkatov

https://eclypsium.com/2021/06/24/biosdisconnect/

https://eclypsium.com/2021/04/14/boothole-how-it-started-how-its-going/

https://eclypsium.com/2020/12/03/trickbot-now-offers-trickboot-persist-brick-profit/

 

This segment is sponsored by Eclypsium. Visit https://securityweekly.com/eclypsium to learn more about them!

 

Visit https://www.securityweekly.com/psw for all the latest episodes!

Show Notes: https://securityweekly.com/psw705

...more
View all episodesView all episodes
Download on the App Store

Paul's Security Weekly (Video)By Security Weekly Productions

  • 5
  • 5
  • 5
  • 5
  • 5

5

2 ratings


More shows like Paul's Security Weekly (Video)

View all
Security Now (Audio) by TWiT

Security Now (Audio)

1,966 Listeners

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

628 Listeners

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec by Jerry Bell and Andrew Kalat

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec

367 Listeners

Security Now (Video) by TWiT

Security Now (Video)

148 Listeners

Windows Weekly (Video) by TWiT

Windows Weekly (Video)

79 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,014 Listeners

Enterprise Security Weekly (Video) by Security Weekly Productions

Enterprise Security Weekly (Video)

3 Listeners

Security Weekly News (Video) by Security Weekly Productions

Security Weekly News (Video)

5 Listeners

Paul's Security Weekly (Audio) by Security Weekly Productions

Paul's Security Weekly (Audio)

16 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

7,851 Listeners

First Ring Daily by Paul Thurrott and Brad Sams

First Ring Daily

51 Listeners

CISO Series Podcast by David Spark, Mike Johnson, and Andy Ellis

CISO Series Podcast

187 Listeners

Talkin' About [Infosec] News, Powered by Black Hills Information Security by Black Hills Information Security

Talkin' About [Infosec] News, Powered by Black Hills Information Security

90 Listeners

Defense in Depth by David Spark, Steve Zalewski, Geoff Belknap

Defense in Depth

78 Listeners

Cyber Security Headlines by CISO Series

Cyber Security Headlines

118 Listeners