Microsoft has published some helpful guidance against the BlackLotus UEFI bootkit vulnerability that can bypass Secure Boot, VBS, BitLocker, Windows Defender, and more to infect updated Windows PCs.
Uefi bug RSS
MSI motherboards, from both Intel and AMD, have been vulnerable due to a broken Secure Boot firmware setting issue. The bug would allow potentially malicious files to boot into an affected system.
EA has confirmed that RTX 4090 users are seeing flashing/blinking screens when playing Need for Speed Unbound. And it looks like the only way to fix the issue is to update the GPU's BIOS.
With Patch Tuesday recently, Microsoft released the KB5012170 update which adds new vulnerable UEFI signatures to the Secure Boot DBX. The newly added signatures are related to the GRUB vulnerability.
Certain Windows PCs with Gigabyte and Asus motherboards have been found to be infected with a new "CosmicStrand" UEFI rootkit. The malware is an evolution of an older rootkit dubbed "Spy Shadow".
Several popular Lenovo consumer models, including IdeaPad, Legion, and more, have been found to be vulnerable to UEFI firmware security bugs. The vulnerabilities can lead to privilege of escalation.
The Windows 11 AMD Radeon Adrenalin graphics drivers may be messing up Ryzen CPU settings inside the firmware as a result of its Auto Overclock feature found inside the Radeon Software.
Firmware security research firm Binarly has revealed that it discovered nearly two dozen vulnerabilities in InsydeH2O UEFI used by several vendors like Microsoft, Intel, Dell, HP, and more.