CosmicStrand: The Discovery of a Sophisticated UEFI Firmware Rootkit
Reference Article
CosmicStrand appears to be the work of an unknown Chinese-speaking threat actor.
The FirmGuard Blog
Reference Article
CosmicStrand appears to be the work of an unknown Chinese-speaking threat actor.
BIOS firmware security
Remote BIOS configuration
Remote BIOS update
Keep FirmGuard protected
Freeze endpoints until unlocked
Remote endpoint drive erasure
Remotely reimage an endpoint
Display endpoint system information
Monitor endpoint connectivity