Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
Researchers: Rootkits headed for BIOS
Robert Lemos, SecurityFocus 2006-01-26

ARLINGTON, Virginia -- Insider attacks and industrial espionage could become more stealthy by hiding malicious code in the core system functions available in a motherboard's flash memory, researchers said on Wednesday at the Black Hat Federal conference.

Comments Mode:
Researchers: Rootkits headed for BIOS 2006-01-27
Bela from VA (1 replies)
It wouldn't be that easy!!! 2006-01-27
janice
Quibble - rootkit for OS X 2006-01-27
Anonymous (1 replies)
Re: Quibble - rootkit for OS X 2006-01-30
Anonymous
Researchers: Rootkits headed for BIOS 2006-01-27
Gimping 8600
Not actually 2006-01-27
Prisoner (1 replies)
Re: Not actually 2006-06-24
Anonymous
Researchers: Rootkits headed for BIOS 2006-02-07
Samuel Stetler
Researchers: Rootkits headed for BIOS 2006-02-13
Black~Feather (1 replies)
Researchers: Rootkits headed for BIOS 2006-03-25
CONFIRMED ROOTKIT TROJAN / SCRIPTING IN BIOS (5 replies)
Re: Researchers: Rootkits headed for BIOS 2006-11-19
hylas
You are not going crazy, it's real.

I concur with 99% of what you have written, it's the same thing, (I have Macs, System 7 - OS X 10.4.x)

See my previous post above - I'm coming late to this thread.

This has been around a long time, I first found it (fought it in '97).

Most recently '05, I'm sure it's still on (all) my machines.

Yes, it's cross-platform, with an insidiously wicked sense of humour, not to discount the seriousness of this thread and several of our predicaments (mine included), but that's how I'm able to identify it as the same (group?) as the attack in '97.

I think it's a serious problem for (US-World) national security (unless, of corse it *is* "national security".

"The trojan has controllers on the universal power supply."

Which elevates it to "logic bomb" status, I've lost monitors, graphic cards.

If you get too close it soft-power shutdowns your ass. (which is stunning).

Complete control (IMHO).

"... sometimes it lets you think that you are winning, only to find out after hours of hard work that it was a nasty joke played on you."

Exactly.

"Rules as we know them, are no longer are applied."

I believe it places microcode on closed (previously burned) CDs, DVDs, etc. it tags everything, thats why you can't rid yourself of it.

Hardware trumps root.

No, you're not crazy.

Question is, what are (we?) you going to do about it?

I'm been trying to get attention about this for almost 10 years.

hylas

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/articles/11372/34207#34207







 

Privacy Statement
Copyright 2008, SecurityFocus