Emulating & Exploiting UEFI: Unveiling Vulnerabilities in Firmware Security
netspi.com | blog | #reverse-engineering | #firmware | #uefi | #qiling | #bios | #buffer-overread | #logofail
Summary
Using the Qiling framework to emulate a UEFI PNG decoder, researchers found a buffer over-read from spoofed IDAT chunk lengths, a LogoFail-adjacent flaw leaking data during boot.
- Published
- Collected
Skip to content