Главная
Study mode:
on
1
Intro
2
Just what is firmware?
3
Just what is code?
4
Why do we care about bugs in firmware?
5
What's the attack surface for firmware?
6
Where is firmware?
7
Welcome to System Management Mode
8
Not all runtime firmware is SMM
9
never touch untrusted data
10
Vulnerability mitigation
11
don't write bugs
12
But is it just about code quality?
13
How can we reduce attack surface?
14
Does Coreboot inherently save us?
15
What about the Management Engine? • Run the latest firmware
16
Firmware updates are important
17
Options for compatibility
18
Options for more advanced users
19
Options for super-advanced users
20
In summary
Description:
Explore firmware security in this 45-minute conference talk from linux.conf.au. Delve into the importance of firmware security and its impact on overall system security. Learn about recent vulnerabilities in system management mode, firmware-level hardware initialization scripts, and management engine compromises. Discover the latest advancements in firmware security research and their applications to projects like Coreboot and Libreboot. Gain insights into balancing security with the freedom to run desired software on your system. Understand the attack surface for firmware, vulnerability mitigation strategies, and the significance of firmware updates. Examine options for compatibility and advanced users in improving firmware security.

Firmware Security - Why It Matters and How You Can Have It

linux.conf.au
Add to list