Microsoft idabweretsa PC yokhala ndi chitetezo cha Hardware motsutsana ndi ziwopsezo kudzera pa firmware

Microsoft mogwirizana ndi Intel, Qualcomm ndi AMD прСдставила mafoni okhala ndi chitetezo cha Hardware motsutsana ndi kuukira kudzera pa firmware. Kampaniyo idakakamizika kupanga mapulaneti oterowo ndi kuchuluka kwa ziwopsezo kwa ogwiritsa ntchito omwe amatchedwa "owononga zipewa zoyera" - magulu a akatswiri akubera omwe ali pansi pa mabungwe aboma. Makamaka, akatswiri a chitetezo cha ESET amanena kuti izi zimachokera ku gulu la owononga Russia APT28 (Fancy Bear). Gulu la APT28 akuti lidayesa mapulogalamu omwe anali ndi code yoyipa pomwe akutsitsa firmware kuchokera ku BIOS.

Microsoft idabweretsa PC yokhala ndi chitetezo cha Hardware motsutsana ndi ziwopsezo kudzera pa firmware

Pamodzi, akatswiri a Microsoft cybersecurity ndi opanga mapurosesa adapereka yankho la silicon ngati muzu wa chidaliro. Kampaniyo idatcha ma PC oterowo Secured-core PC (PC yokhala ndi pachimake chotetezeka). Pakalipano, Ma PC Otetezedwa akuphatikizapo ma laputopu angapo ochokera ku Dell, Lenovo ndi Panasonic ndi piritsi la Microsoft Surface Pro X. Ma PC awa ndi amtsogolo omwe ali ndi maziko otetezeka ayenera kupatsa ogwiritsa ntchito chidaliro chonse kuti mawerengedwe onse adzakhala odalirika ndipo sangawatsogolere. data compromise .

Mpaka pano, vuto la ma PC olimba linali loti firmware microcode idapangidwa ndi boardboard ndi OEMs system. M'malo mwake, inali ulalo wofooka kwambiri pamayendedwe a Microsoft. Mwachitsanzo, Xbox game console yakhala ikugwira ntchito ngati Secured-core platform kwa zaka zambiri, popeza chitetezo cha nsanja pamagulu onse - kuchokera ku hardware kupita ku mapulogalamu - chimayang'aniridwa ndi Microsoft mwiniwake. Izi sizinatheke ndi PC mpaka pano.

Microsoft idapanga chisankho chosavuta kuchotsa firmware pamndandanda wowerengera ndalama pakutsimikizira koyambirira kwa mphamvu ya loya. Zolondola, adapereka njira yotsimikizira ku purosesa ndi chip chapadera. Izi zikuwoneka kuti zimagwiritsa ntchito kiyi ya hardware yomwe imalembedwa kwa purosesa panthawi yopanga. Firmware ikakwezedwa pa PC, purosesa imayiyang'ana kuti ikhale yotetezeka komanso ngati idali yodalirika. Ngati purosesa sinalepheretse firmware kutsitsa (idavomereza kuti idali yodalirika), kuwongolera pa PC kumasamutsidwa ku makina opangira. Dongosolo limayamba kuganizira za nsanja yodalirika, ndipo pokhapo, kudzera mu njira ya Windows Hello, imalola wogwiritsa ntchito kuyipeza, komanso kupereka malowedwe otetezeka, koma pamlingo wapamwamba kwambiri.


Microsoft idabweretsa PC yokhala ndi chitetezo cha Hardware motsutsana ndi ziwopsezo kudzera pa firmware

Kuphatikiza pa purosesa, chip cha System Guard Secure Launch ndi chojambulira makina ogwiritsira ntchito akukhudzidwa ndi chitetezo cha hardware cha mizu yodalirika (ndi kukhulupirika kwa firmware). Njirayi imaphatikizansopo ukadaulo wa virtualization, womwe umalekanitsa kukumbukira pamakina ogwiritsira ntchito kuti mupewe kuukira kwa OS kernel ndi kugwiritsa ntchito. Zovuta zonsezi zimapangidwira kuteteza, choyamba, wogwiritsa ntchito kampani, koma posakhalitsa china chake chofananacho chidzawonekera m'ma PC ogula.



Source: 3dnews.ru

Kuwonjezera ndemanga