Gigabyte Motherboards Sold with Critical Firmware Backdoor.

TL;DR Summary
Hundreds of motherboard models made by Gigabyte include a backdoor functionality that could pose a significant risk to organizations, according to researchers at Eclypsium. The firmware on many Gigabyte systems drops a Windows binary that is executed when the operating system boots up, which then downloads and runs another payload fetched from Gigabyte servers over an insecure connection. While the feature appears related to the Gigabyte App Center, it could be abused by threat actors and is difficult to remove. Eclypsium has published a list of more than 270 affected motherboard models, indicating that millions of devices likely have the backdoor.
- Organizations Warned of Backdoor Feature in Hundreds of Gigabyte Motherboards SecurityWeek
- Millions of Gigabyte Motherboards Were Sold With a Firmware Backdoor WIRED
- Firmware Backdoor Discovered in Gigabyte Motherboards, 250+ Models Affected Tom's Hardware
- Gigabyte shipped hundreds of motherboard models with firmware backdoor | PCWorld PCWorld
- Critical Firmware Backdoor in Gigabyte Systems Exposes ~7 Million Devices The Hacker News
Reading Insights
Total Reads
0
Unique Readers
9
Time Saved
2 min
vs 2 min read
Condensed
75%
401 → 101 words
Want the full story? Read the original article
Read on SecurityWeek