6月24日临近:Windows与Linux须更新Secure Boot密钥抵御固件级威胁

AI导读

Windows与Linux用户须在6月24日前更新用于保护系统免受固件级UEFI感染(Bootkit)的加密密钥。届时三张微软签名证书将过期,它们是Secure Boot信任链的核心,用于校验启动阶段所有固件与代码的来源可信。Secure Boot旨在阻断在操作系统及防护措施之前加载、难以检测且能持久驻留并反复感染的Bootkit。此类恶意软件可在系统重装后存活并继续窃取凭据、植入后门或实施其他破坏,及时更新密钥对维持启动安全至关重要。

AI Prism 智棱 - AI创业 分类封面图
The clock is ticking for Windows and Linux users to update cryptographic keys that protect their systems against firmware-based UEFI infections, a pernicious form of malware that loads before operating system and anti-malware protections start. Beginning June 24, three certificates that cryptographically verify that each piece of firmware and software that loads during system boot will expire. The Microsoft-signed certificates are the linchpins of Secure Boot, a Microsoft-designed chain of trust. Secure Boot checks the digital signatures of all code that loads during system startup to ensure it originates from a trusted provider, such as the manufacturer of the motherboard the system runs on. Secure Boot is designed to thwart bootkits, a form of malware that alters the systems responsible for loading firmware and software during the initial boot sequence. Because bootkits load before the OS and most other code, they can be difficult to detect. Once installed, they typically load malware onto the OS that steals credentials, backdoors the system, or performs other malicious actions. Even when the OS is disinfected, the bootkit can reinfect the system. Bootkits survive OS reinstallations as well.Read full article Comments

内容声明

本文内容基于公开市场信息与媒体报道进行整理,部分观点来自社区讨论。如涉及事实性问题,欢迎通过 xurj005@163.com 与我们指正,我们将及时核实并更新。