加载中... --°C -- · --% · --
|
加载中... --°C -- · --% · --

Windows and Linux users: The deadline to update Secure Boot keys is near

Windows and Linux users: The deadline to update Secure Boot keys is near
摘要

Windows和Linux用户需在6月24日前更新安全启动密钥,因为三个用于验证启动过程中固件和软件的数字证书即将到期。这些证书是安全启动机制的核心,旨在防止启动套件等固件级恶意软件感染。启动套件在操作系统和防病毒软件启动前加载,难以检测,且能在系统重装后持续存在。

The clock is ticking for Windows and Linux users to update cryptographic keys that protect their systems against firmware-based UEFI infections, a pernicious form of malware that loads before operating system and anti-malware protections start.

Beginning June 24, three certificates that cryptographically verify that each piece of firmware and software that loads during system boot will expire. The Microsoft-signed certificates are the linchpins of Secure Boot, a Microsoft-designed chain of trust. Secure Boot checks the digital signatures of all code that loads during system startup to ensure it originates from a trusted provider, such as the manufacturer of the motherboard the system runs on.

Secure Boot is designed to thwart bootkits, a form of malware that alters the systems responsible for loading firmware and software during the initial boot sequence. Because bootkits load before the OS and most other code, they can be difficult to detect. Once installed, they typically load malware onto the OS that steals credentials, backdoors the system, or performs other malicious actions. Even when the OS is disinfected, the bootkit can reinfect the system. Bootkits survive OS reinstallations as well.

Read full article

Comments

转载信息
原文: Windows and Linux users: The deadline to update Secure Boot keys is near (2026-06-17T11:15:17)
作者: Dan Goodin 分类: 科技
评论 (0)
登录 后发表评论

暂无评论,来留下第一条评论吧