Microsoft has announced the deployment phase for the BlackLotus patch, along wi its details. If you are not aware, BlackLotus is a UEFI Secure Boot vulnerability that affects Windows 11, 10, and more.
Blacklotus RSS
Microsoft has blocked Secure Boot mitigations for the BlackLotus (CVE-2023-24932) vulnerability on some PCs. The block affects Windows Server 2012 and 2012 R2 systems due to incompatibilities with TPM
The source code for BlackLotus vulnerability leaked a few days ago, almost around the same time as Microsoft rolled out the second phase hardening of its secure boot flaw via Dynamic Windows updates.
Microsoft released its Patch Tuesday updates earlier today for both Windows 11 and 10. In a follow-up, it added that these updates bring the latest Dynamic SafeOS packages against Secure Boot flaws.
Microsoft has patched UEFI Secure Boot security vulnerability called BlackLotus with its latest Update Tuesday released earlier today. The fix is available on Windows 10, Windows 11, and Servers.
Microsoft has published some helpful guidance against the BlackLotus UEFI bootkit vulnerability that can bypass Secure Boot, VBS, BitLocker, Windows Defender, and more to infect updated Windows PCs.
BlackLotus, which is a bootkit, has been doing the rounds on the internet since last year. This bootkit is capable of bypassing Secure Boot, disabling BitLocker, Microsoft Defender, and more.