FYI: Intel BootGuard OEM private keys leak from MSI cyber-heist
Intel BootGuard OEM keys are generated by the system manufacturer, and these are not Intel signing keysThe Register"There have been researcher claims that private signing keys are included in the data including MSI OEM Signing Keys for Intel BootGuard. It should be noted that Intel BootGuard OEM keys are generated by the system manufacturer, and these are not Intel signing keys."
If miscreants can bypass the BootGuard technology, they could gain full system access, steal sensitive data, and perform all sorts of illicit activities without being noticed as their malware runs underneath the OS and antivirus packages. BootGuard's security is baked in, with silicon-level fuses in the chips – so if these private keys leak, there's no easy fix in terms of revoking the keys, or generating and using fresh private-public key pairs for machines already out there. As we understand it, the chipset has the public half of these MSI-issued firmware signing keys fixed in place, and the private half has leaked.
The crooks posted screenshots to prove it, and threatened to release this data unless MSI paid a $4 million ransom. It's understood at least some of that information – such as the MSI firmware source code and private BootGuard keys – has escaped into the wild from the extortionists' leak site.
Ireland Latest News, Ireland Headlines
Similar News:You can also read news stories similar to this one that we have collected from other news sources.
You’ll like Intel’s NUC 13 Pro once the fan stopsYou'll [BZZ] like Intel’s [BZZ] NUC 13 Pro once the fan [BZZ] stops blowing
Read more »
Intel Boot Guard private keys have reportedly leaked, compromising the security of many computersHackers demanded $4 million from MSI. It seems MSI didn't pay up.
Read more »
Spectre of layoffs looms over Intel following glum salesSpectre of layoffs looms over Intel following dismal sales
Read more »
Market Drayton man admits cannabis possession and breaching non-molestation orderA Market Drayton man has admitted possession of cannabis and breaching a non-molestation order.
Read more »
Physical Xbox editions of Cuphead now available to orderiam8bit's physical release of Cuphead is now available for preorder, but if you're looking for a little more swag with your purchase, the Cuphead Limited Edition bundle can also be preordered.
Read more »