Rapid7 threat hunter told The Reg wrote a PoC. No he’s not releasing it RSAC If Rapid7’s Christiaan Beek decided to change careers and become a ransomware criminal, he knows exactly how he’d innovate: CPU ransomware.…
Rapid7 threat hunter told The Reg wrote a PoC. No he’s not releasing it RSAC If Rapid7’s Christiaan Beek decided to change careers and become a ransomware criminal, he knows exactly how he’d innovate: CPU ransomware.…
I was like what? cpus don’t hold writable data persistently, do they? microcode is always loaded by the firmware and the OS at boot!
but the answer is that they are infecting the firmware, the UEFI, which is fatal in itself, and then they are also able to alter how the CPU works. but, they live in the firmware, and infecting that, not the CPU