Rapid7 threat hunter told The Reg wrote a PoC. No he’s not releasing it RSAC  If Rapid7’s Christiaan Beek decided to change careers and become a ransomware criminal, he knows exactly how he’d innovate: CPU ransomware.…

  • ReversalHatchery@beehaw.org
    link
    fedilink
    English
    arrow-up
    2
    ·
    edit-2
    20 days ago

    I was like what? cpus don’t hold writable data persistently, do they? microcode is always loaded by the firmware and the OS at boot!

    but the answer is that they are infecting the firmware, the UEFI, which is fatal in itself, and then they are also able to alter how the CPU works. but, they live in the firmware, and infecting that, not the CPU