View Single Post
Old 06-05-2023, 01:01 PM   #4472
Yoshoobaroo
TRACKBREAD
 
Yoshoobaroo's Avatar
 
Join Date: Mar 2016
Drives: 2013 BRZ
Location: Florida
Posts: 3,929
Thanks: 2,660
Thanked 4,032 Times in 1,898 Posts
Mentioned: 30 Post(s)
Tagged: 0 Thread(s)
Garage
Quote:
Originally Posted by Dadhawk View Post
You realize this is a firmware exploit and likely does not require a specific OS? In one version of it, all it requires is a "firmware update" at a specific location on NAS.
It injects a .EXE executable through Windows Platform Binary Table. It's a way for OEMs to have executables in a UEFI table that get silently and automatically installed when Windows boots.

Linux doesn't recognize the injected payload so it gets ignored. Even if it was a linux specific file, you have to make it executable first through setting the permissions before it will launch it.
Yoshoobaroo is offline   Reply With Quote
The Following User Says Thank You to Yoshoobaroo For This Useful Post:
Dadhawk (06-05-2023)