27
CISA Warns of Exploited Flaw in Asus Update Tool - SecurityWeek
(www.securityweek.com)
c/cybersecurity is a community centered on the cybersecurity and information security profession. You can come here to discuss news, post something interesting, or just chat with others.
THE RULES
Instance Rules
Community Rules
If you ask someone to hack your "friends" socials you're just going to get banned so don't do that.
Learn about hacking
Other security-related communities !databreaches@lemmy.zip !netsec@lemmy.world !securitynews@infosec.pub !cybersecurity@infosec.pub !pulse_of_truth@infosec.pub
Notable mention to !cybersecuritymemes@lemmy.world
I suprised it took this long. I bought a new motherboard in 2023 and discovered that the bios phones home and can patch the bios before the OS loads and that just was a big NOPE for me and I disabled it.
Was that a specific bios/uefi setting(s)?
yes, but IDK what it's called off the top of my head. I got suspicious after noticing firewall logs to asus before the spamming Microsoft logs. the setting also lets the bios talk to the os by providing drivers during the Windows oobe, it will inject the Asus software like it's preinstalled like OEM supplied. pissed me off because I have a iso of windows from ma visual studio download that's basically the latest widows patched.i was like ....blank slate, should just be Microsoft wtf is Asus junk software doing there?!