[ltp] Re: Can you trust your firmware?

Shem Multinymous linux-thinkpad@linux-thinkpad.org
Mon, 18 Feb 2008 23:15:37 -0500


On Feb 18, 2008 7:54 PM, Andrew Barr <andrew.james.barr@gmail.com> wrote:
> EFI is the face the firmware puts of
> for the world (e.g. the OS), it doesn't give us any useful information
> about things like hardware initialization that are done before the OS even
> starts.

On most laptops, the worst potentially-evil part of the BIOS is not
the boot code, but the System Management Mode code. SMM can take over
at essentially any time, and can read and manipulate all system state
arbitrarily.

  Shem