Hacker News new | ask | show | jobs
by mjg59 1204 days ago
There are UEFI bootkits in the wild that are prevented by secure boot.
1 comments

An attack that does not work on a technology is not evidence of a control’s effectiveness.
Literally the only difference between a system with secure boot and one without is that unsigned boot components (such as the ones used by prior UEFI bootkits) won't boot. The fact that they don't work is absolutely evidence of the effectiveness of the control.