Does BIOS factory reset help with firmware malware?
This can help only when a dual-BIOS/UEFI system is used, and by resetting, you mean replacing the current (writable BIOS/UEFI) with a protected (non-writable copy).
Does BIOS factory reset help with firmware malware?
Pease enlighten users how one detects embedded malware in hardware in their systems.
I apologize I jumped too far into the tin foil.I did not research much about it. The malware embedded in hardware is not the same as the malware embedded in the firmware.
You really can't. Many of the infections are highly targeted spear attacks and they occur via supply chain methods. It's not something you randomly download. That goes double for firmware attacks since those are highly targeted to the controller and even controller revisions. Some like the solid state drive controller infections require a specialized programming tool that just doesn't happen via a regular download since those sectors are in ROM.At that point just sanitize with gasoline and a match.
Pease enlighten users how one detects embedded malware in hardware in their systems.
No you have to reflash it. You can't just reset to default since default is the infection.Does BIOS factory reset help with firmware malware?
Reset works with some router malware.No you have to reflash it. You can't just reset to default since default is the infection.
Unless you pissed off some psychpath talented in hacking.Those attacks cost $ millions and are not propagated beyond a very few infected systems
The least I worry about a firmware malware when I am rich and powerful to be targeted; just give me money and power, and I will take care of the firmware.I have yet to encounter a firmware infection in my life, so I'm not going to worry about things that haven't happened yet, if this issue becomes rife I'm giving up tech together & living in a decent cave (I have a cave selected)
At that time if you are a male then you should be worried about the other firmware infectionsThe least I worry about a firmware malware when I am rich and powerful to be targeted; just give me money and power, and I will take care of the firmware.
I've researched dumping the firmware of routers and you need specialized tools to dump it, there are open source tools but they are not reliable or not tested.I apologize I jumped too far into the tin foil.
I was just curious as to how one would go about detecting this next level of paranoia since we were on a roll.
Against a advanced attacker such as Equation group who were infecting the hard drives firmware to drop implants I don't think you can say a re-flash will cure all.Reset works with some router malware.
I know reflash is the cure, but it comes at a cost; in countries with potential unexpected power outage, it will cost your MB.
I've researched dumping the firmware of routers and you need specialized tools to dump it, there are open source tools but they are not reliable or not tested.
Last time I checked anyway when I was researching it, maybe I just don't have the technical skills
Against a advanced attacker such as Equation group who were infecting the hard drives firmware to drop implants I don't think you can say a re-flash will cure all.
That was 10 years ago now it would be scary their capabilities...
The good news you won't experience these exotic exploits/implants if your not high value or work in a hostile government/intelligence/military.
The good or bad news is that commercial malware/spyware vendors are getting caught, that's the most potent attack vector mobile infection because of E2EE apps.
At that time if you are a male then you should be worried about the other firmware infections