Explore modern Secure Boot attacks and techniques for bypassing hardware Root of Trust from software in this conference talk from Ekoparty 2019. Delve into the complexities of armoring Secure Boot by moving Root of Trust to hardware, and uncover the security issues that arise from the multiple layers of code between hardware and firmware. Examine a specific vulnerability in Intel Boot Guard technology that allows attackers to bypass security checks from the OS without physical hardware access. Learn about Embedded Controller (EC) cooperation with UEFI Firmware and the Authenticated Code Module (ACM) runtime environment. Gain insights into topics such as System Management Interface, Lenovo Driver, Compute Race, and Permanent Disable. Understand the concept of Hardware Root of Trust, Boot Guard Technology, and the potential pitfalls of security by obscurity in Lenovo Boot Guard implementations.
Modern Secure Boot Attacks - Alex Matrosov - Ekoparty Security Conference - 2019