Replace Your Exploit-Ridden Firmware with Linux
Page 1 of 1
3E74




Posts: 2559
Location: feels wrong
PostPosted: Mon, 30th Oct 2017 01:51    Post subject: Replace Your Exploit-Ridden Firmware with Linux
Replace Your Exploit-Ridden Firmware with Linux

Quote:
With the WikiLeaks release of the vault7 material, the security of the UEFI (Unified Extensible Firmware Interface) firmware used in most PCs and laptops is once again a concern. UEFI is a proprietary and closed-source operating system, with a codebase almost as large as the Linux kernel, that runs when the system is powered on and continues to run after it boots the OS (hence its designation as a “Ring -2 hypervisor").

It is a great place to hide exploits since it never stops running, and these exploits are undetectable by kernels and programs. Our answer to this is NERF (Non-Extensible Reduced Firmware), an open source software system developed at Google to replace almost all of UEFI firmware with a tiny Linux kernel and initramfs.
The initramfs file system contains an init and command line utilities from the u-root project (http://u-root.tk/), which are written in the Go language. About Ronald G. Minnich Ron Minnich is a Software Engineer at Google.
He has contributed to many open source projects in the last several decades, including the Linux kernel (9p file system); the FreeBSD kernel (rfork); and Plan 9 (many different areas).

He directed the team that ported Plan 9 to the Blue Gene supercomputers. He invented LinuxBIOS (now called coreboot) in 1999. He is one of the core contributors to the Harvey operating system.
His most recent Linux Foundation talk was on how to build your own signed version of ChromeOS and resign your Chromebook with your personal keys in 2016.




https://osseu17.sched.com/event/ByYt/replace-your-exploit-ridden-firmware-with-linux-ronald-minnich-google

https://schd.ws/hosted_files/osseu17/84/Replace%20UEFI%20with%20Linux.pdf


..:: Life - A sexually transmitted disease which always ends in death. There is currently no known cure::.. Troll Dad
Back to top
Nui
VIP Member



Posts: 5720
Location: in a place with fluffy towels
PostPosted: Mon, 30th Oct 2017 02:33    Post subject:
I only understood half of that and I didn't like that part *sigh*
Back to top
3E74




Posts: 2559
Location: feels wrong
PostPosted: Mon, 30th Oct 2017 03:19    Post subject:


..:: Life - A sexually transmitted disease which always ends in death. There is currently no known cure::.. Troll Dad
Back to top
Page 1 of 1 All times are GMT + 1 Hour
NFOHump.com Forum Index - Operating Systems
Signature/Avatar nuking: none (can be changed in your profile)  


Display posts from previous:   

Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum


Powered by phpBB 2.0.8 © 2001, 2002 phpBB Group