Cyber security experts sound the alarm: A dangerous new vulnerability has been discovered in the UEFI boot system that allows attackers to completely bypass the Secure Boot protection mechanism. The fact that even a complete reinstallation of the operating system cannot rid the computer of this threat is particularly alarming.
The new vulnerability, codenamed CVE-2024-7344 Howyar Taiwan Secure Boot Bypass, is associated with critical flaws in the PE boot loader. Attackers can use this “hole” to load any uncertified UEFI files. The most dangerous thing is that malware installed through this vulnerability becomes practically invisible to security systems.
Cybercriminals get the opportunity to replace the standard operating system boot loader on the EFI partition with their malicious version. Such a modification contains an encrypted XOR PE image that completely bypasses the Secure Boot system. As a result, installed antivirus programs and other protection tools are ineffective against this threat.
Of particular concern is the fact that the vulnerability is actively exploited through well-known system recovery tools. Among the compromised programs:
Microsoft and ESET have already responded to the vulnerability. The companies have implemented urgent security measures, including revoking the certificates of compromised software through the latest Windows update. Experts strongly recommend that users immediately update their Windows operating system and install the latest versions of all programs they use.
< IMG SRC = "/Uploads/Blogs/C8/B4/IB-FRH3LJBHA_C9316240.jpg" Alt = "American developers presented innovative UAVA Coyote Le Sr,…
< img src = "/uploads/blogs/3c/e9/ib-frh3k0gQu_7c6fc931.jpg" Alt = "New tactics & quot; Shahmed & quot; quot;…
< img src = "/uploads/blogs/8e/afrgop0T5O_6240df4a.jpg" Alt = "Microsoft believes that AI can reduce the level…
< IMG SRC = "/Uploads/Blogs/2b/33/IB-FRGOL5E57_7FDB35A7.jpg" Alt = "Man by deception made 7 million who belonged…
< IMG SRC = "/Uploads/Blogs/C3/1C/IB-FRH7864F3_8B7A3777B.PNG" Alt = "Man was engaged in the sale < p…
< IMG SRC = "/Uploads/Blogs/31/B7/IB-FRH35T9GM_5237C6FC.jpg" Alt = "Named the best smartphones Samsung in 2025 under…