Hacker News new | past | comments | ask | show | jobs | submit login
Vulnerabilities allowing permanent infections affect 70 Lenovo laptop models (arstechnica.com)
8 points by paulcarroty on July 14, 2022 | hide | past | favorite | 3 comments



What's the attack vector?

Remote code exec, or local attacker only?


the quote from the article: " The vulnerabilities can be exploited to achieve arbitrary code execution in the early phases of the platform boot, possibly allowing the attackers to hijack the OS execution flow and disable some important security features. 2/6 — ESET research (@ESETresearch) July 13, 2022"


Yes, I read the article. It's incomplete.

> The vulnerabilities can be exploited

How? Local touch only? It makes a huge difference...




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: