Categories: Techno

Millions of computers at risk due to hacker invention

Cyber ​​security experts sound the alarm: A dangerous new vulnerability has been discovered in the UEFI boot system that allows attackers to completely bypass the Secure Boot protection mechanism. The fact that even a complete reinstallation of the operating system cannot rid the computer of this threat is particularly alarming.

What is CVE-2024-7344 and why is it dangerous

The new vulnerability, codenamed CVE-2024-7344 Howyar Taiwan Secure Boot Bypass, is associated with critical flaws in the PE boot loader. Attackers can use this “hole” to load any uncertified UEFI files. The most dangerous thing is that malware installed through this vulnerability becomes practically invisible to security systems.

Attack mechanism and its consequences

Cybercriminals get the opportunity to replace the standard operating system boot loader on the EFI partition with their malicious version. Such a modification contains an encrypted XOR PE image that completely bypasses the Secure Boot system. As a result, installed antivirus programs and other protection tools are ineffective against this threat.

Popular programs at risk

Of particular concern is the fact that the vulnerability is actively exploited through well-known system recovery tools. Among the compromised programs:

  • Howyar SysReturn, a popular system recovery tool;
  • Greenware GreenGuard, used by many system administrators;
  • Radix SmartRecovery, a widely used backup solution.

How to protect yourself from the threat

Microsoft and ESET have already responded to the vulnerability. The companies have implemented urgent security measures, including revoking the certificates of compromised software through the latest Windows update. Experts strongly recommend that users immediately update their Windows operating system and install the latest versions of all programs they use.

Natasha Kumar

Natasha Kumar has been a reporter on the news desk since 2018. Before that she wrote about young adolescence and family dynamics for Styles and was the legal affairs correspondent for the Metro desk. Before joining The Times Hub, Natasha Kumar worked as a staff writer at the Village Voice and a freelancer for Newsday, The Wall Street Journal, GQ and Mirabella. To get in touch, contact me through my natasha@thetimeshub.in 1-800-268-7116

Share
Published by
Natasha Kumar

Recent Posts

Taken from life. “I always knew that my mother never overcomes any details”: she retired and spy on his neighbors

My mother, a teacher by calling, spent her whole life in school walls, where vigilance…

56 minutes ago

Taken from life. “For two years my son has been trying to regain his ex -wife he left”: I say nothing, I just look at the side

Two years ago, Wanda was the wife of my son, Kacper. Their story began like…

56 minutes ago

The scandal around Karol Nawrocki is gaining momentum. The prosecutor's office interrupts the case

On Monday, Poland was circulated by surprising news about Karol Nawrocki, former director of the…

56 minutes ago

MacBook Air will get a powerful upgrade already next month

< img src = "/uploads/blogs/20/02/ib-fqglf0ghl_f275e194.png" Alt = "MacBook Air will receive a powerful upgrade already…

2 hours ago

Ukrainian developers presented a unique drone Kamikadze with anti-tank mines

< img src = "/uploads/blogs/57/cb/ib-1ikrpq930_6FC93162.jpg" Alt = "Ukrainian developers presented a unique drone kamikadze with…

2 hours ago