Free Republic
Browse · Search
General/Chat
Topics · Post Article

Skip to comments.

Trickbot trojan found to now have the ability to modify a computer's UEFI
Tech Xplore ^ | 12/04/2020 | Bob Yirka

Posted on 12/04/2020 8:35:07 AM PST by BenLurkin

A combined team of security experts from Advanced Intelligence and Eclypsium has announced that the Trickbot trojan malware now has the ability to modify a computer's Unified Extensible Firmware Interface—the interface between the firmware on a computer motherboard and the computer's operating system—in this case, Microsoft Windows.

Trickbot has been in the news of late due to its advanced capabilities. It has a modular design and is notable for its ability to gain administrative capabilities on infected computers. The entities behind the creation of the trojan are believed to be criminals in Russia and North Korea, and they have used it to target telecoms, health care firms, education institutions and even infrastructure operators (quite often in the form of ransomware).

When a computer boots up, the UEFI and firmware work together to bring up the operating system—if nefarious code has been embedded in the firmware, it can load its own software modules or even modify the operating system as it loads. Such modules would then go undetected by conventional antivirus software and would not be overcome, even if the hard drive were wiped clean or replaced altogether.

(Excerpt) Read more at techxplore.com ...


TOPICS: Computers/Internet
KEYWORDS: hackers; malware; microsoft; microsoftwindows; tech; trickbot; trojan; windows
Navigation: use the links below to view more comments.
first 1-2021-4041-49 next last

1 posted on 12/04/2020 8:35:07 AM PST by BenLurkin
[ Post Reply | Private Reply | View Replies]

To: BenLurkin

The internet will be great they said...


2 posted on 12/04/2020 8:38:14 AM PST by brownsfan (Schools. If we don't fix the schools, nothing else matters.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: BenLurkin; rdb3; JosephW; Only1choice____Freedom; martin_fierro; Still Thinking; zeugma; Vinnie; ...

Tech Ping


3 posted on 12/04/2020 8:39:42 AM PST by ShadowAce (Linux - The Ultimate Windows Service Pack )
[ Post Reply | Private Reply | To 1 | View Replies]

To: brownsfan

“The internet will be great they said...”

And they were right!


4 posted on 12/04/2020 8:40:03 AM PST by TexasGator (Z1z)
[ Post Reply | Private Reply | To 2 | View Replies]

To: BenLurkin

Masks prevent viruses. Won’t masks prevent trojans, too?


5 posted on 12/04/2020 8:42:40 AM PST by Perseverando (Antifa, BLM, Libs, Progs, Islamonazis, Statists, Commies, DemoKKKrats: It's a Godlessness disorder.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: TexasGator

We’ll get to the point where we’re using one-time-use disposable computers...


6 posted on 12/04/2020 8:42:40 AM PST by CondorFlight
[ Post Reply | Private Reply | To 4 | View Replies]

To: BenLurkin
the creation of the trojan are believed to be criminals in Russia and North Korea,

In other words: OUR OWN CIA, NSA,...
7 posted on 12/04/2020 8:43:37 AM PST by eyeamok
[ Post Reply | Private Reply | To 1 | View Replies]

To: TexasGator

“And they were right!”

Not so much. We have a nation of morons, largely due to the internet. And for people who use it, there’s always some bad actors out there letting this stuff go.

In a fair and just world, guys in black suits would track down and visit these bad actors, and the bad guys would just go away.

But hey, on the bright side, there are LOTS of cool cat videos.


8 posted on 12/04/2020 8:44:07 AM PST by brownsfan (Schools. If we don't fix the schools, nothing else matters.)
[ Post Reply | Private Reply | To 4 | View Replies]

To: CondorFlight

“We’ll get to the point where we’re using one-time-use disposable computers...”

Razor blades went there but now I get almost a month per cartridge.


9 posted on 12/04/2020 8:45:11 AM PST by TexasGator (Z1z)
[ Post Reply | Private Reply | To 6 | View Replies]

To: ShadowAce

I knew way back when they switched to update-able ROM for the OS this would happen.

I’m just surprised it took so long................


10 posted on 12/04/2020 8:46:01 AM PST by Red Badger ( “The goal of socialism is communism.”... Vladimir Lenin)
[ Post Reply | Private Reply | To 3 | View Replies]

To: brownsfan

“Not so much. We have a nation of morons, largely due to the internet.”

No. We are just exposed to more moron due to the internet.


11 posted on 12/04/2020 8:46:48 AM PST by TexasGator (Z1z)
[ Post Reply | Private Reply | To 8 | View Replies]

To: BenLurkin

It’s that whole “Unified” thing.

Obscurity is security.


12 posted on 12/04/2020 8:48:35 AM PST by Empire_of_Liberty
[ Post Reply | Private Reply | To 1 | View Replies]

To: BenLurkin

Read up on Trickbot. It puts bad dll files onto the computer.

Now what operating system uses dll files?


13 posted on 12/04/2020 8:49:43 AM PST by proxy_user
[ Post Reply | Private Reply | To 1 | View Replies]

To: TexasGator

“No. We are just exposed to more moron due to the internet.”

And the morons have a platform. And they validate each other, and spread their stupidity.


14 posted on 12/04/2020 8:52:17 AM PST by brownsfan (Schools. If we don't fix the schools, nothing else matters.)
[ Post Reply | Private Reply | To 11 | View Replies]

To: BenLurkin
I had a great Windows machine in 2001. I had spent $1500 building the best set of hardware. Some turd in Malmo, Sweden hit the machine with a virus that burrowed into the firmware on one of the motherboard chips. It is only a hazard if you boot Windows, but not if you run Linux. That fast Windows machine has been a Linux machine from that point forward.

This "TrickBot" sounds even more egregious than what the turd in Malmo did to my new Windows machine.

15 posted on 12/04/2020 9:03:09 AM PST by Myrddin
[ Post Reply | Private Reply | To 1 | View Replies]

To: brownsfan
We have a nation of morons,

I believe so. These days, when you want to solve a problem, you send a request to a server cloud via Internet and get the answer from them. Your brain is getting lazy.

When the connection to Internet is cut off, they can't do anything because their real brain is essentially a giant server cloud connected via Internet.

16 posted on 12/04/2020 9:05:37 AM PST by TigerLikesRoosterNew
[ Post Reply | Private Reply | To 8 | View Replies]

To: proxy_user

The evil OS whose initials are MS.


17 posted on 12/04/2020 9:07:31 AM PST by TigerLikesRoosterNew
[ Post Reply | Private Reply | To 13 | View Replies]

To: TigerLikesRoosterNew

I use Linux a lot more for internet stuff.


18 posted on 12/04/2020 9:08:34 AM PST by wally_bert (I cannot be sure for certain, but in my personal opinion I am certain that I am not sure.)
[ Post Reply | Private Reply | To 17 | View Replies]

To: eyeamok

Careful buddy...

Its really tough to wake up the social contract folks to the fact that we create our own foreign enemies to fight with and our own domestic criminals to punish. Sometimes they get hostile if you try.


19 posted on 12/04/2020 9:09:22 AM PST by L,TOWM (An upraised middle finger is my virtue signal.)
[ Post Reply | Private Reply | To 7 | View Replies]

To: CondorFlight
We’ll get to the point where we’re using one-time-use disposable computers...

But what if we do a Star Trek NG and “modulate the frequencies” while “reversing the polarity”?

20 posted on 12/04/2020 9:15:26 AM PST by Sirius Lee (They intend to murder us. Prep if you want to live and live like you are prepping for eternal life)
[ Post Reply | Private Reply | To 6 | View Replies]


Navigation: use the links below to view more comments.
first 1-2021-4041-49 next last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
General/Chat
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson