Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
Researchers: Rootkits headed for BIOS
Robert Lemos, SecurityFocus 2006-01-26

ARLINGTON, Virginia -- Insider attacks and industrial espionage could become more stealthy by hiding malicious code in the core system functions available in a motherboard's flash memory, researchers said on Wednesday at the Black Hat Federal conference.

Comments Mode:
Researchers: Rootkits headed for BIOS 2006-01-27
Bela from VA (1 replies)
It wouldn't be that easy!!! 2006-01-27
janice
Sure , I see that everyone is crying out for motherboard jumpers now...It's not that easy though , what do you think that writing the code it's all.Placing it on the BIOS memory would be , let's say also easy , but what then.It could read some arbitrary memory pools and dump them where , how would it comunicate with the r00ter?It would open a tcp port on a *BSD's tcp stack and let everyone in on port xxxxx.C'mon guys!!!I'm not saying it's not possible but it would be very difficult.It could load itself into memory after

boot time and do what?It would have to have different types of code for each os to open a door somehow for it's r00ter.I remember seeing some time ago on phrack a backdoor that was patched into the linux bZimage.That was really nice.As with our BIOS r00ter, it would be VERY difficult to do.Who knows, that's what they said about the pc processors few years back and look where we are now.Who knows......

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/articles/11372/33000#33000
Quibble - rootkit for OS X 2006-01-27
Anonymous (1 replies)
Re: Quibble - rootkit for OS X 2006-01-30
Anonymous
Researchers: Rootkits headed for BIOS 2006-01-27
Gimping 8600
Not actually 2006-01-27
Prisoner (1 replies)
Re: Not actually 2006-06-24
Anonymous
Researchers: Rootkits headed for BIOS 2006-02-07
Samuel Stetler
Researchers: Rootkits headed for BIOS 2006-02-13
Black~Feather (1 replies)
Researchers: Rootkits headed for BIOS 2006-03-25
CONFIRMED ROOTKIT TROJAN / SCRIPTING IN BIOS (5 replies)







 

Privacy Statement
Copyright 2008, SecurityFocus