A Critical Deadline Is Approaching for Windows and Linux Security

https://media.wired.com/photos/6a342b0819ec74e5dcd4e6ca/191:100/w_1280,c_limit/GettyImages-1091064696.jpg

The clock is ticking for Windows and Linux users to update cryptographic keys that protect their systems against firmware-based UEFI infections, a pernicious form of malware that loads before operating system and antimalware protections start.

Beginning June 24, three certificates that cryptographically verify that each piece of firmware and software that loads during system boot will expire. The Microsoft-signed certificates are the linchpins of Secure Boot, a Microsoft-designed chain of trust. Secure Boot checks the digital signatures of all firmware that loads during system startup to ensure it originates from a trusted provider, such as the manufacturer of the motherboard the system runs on.

Secure Boot is designed to thwart UEFI bootkits, a form of malware that alters the Unified Extensible Firmware Interface, the successor to the BIOS, both of which begin the initial boot sequence. Because these bootkits load before the OS and most other code, they can...

Copyright of this story solely belongs to wired.com. To see the full text click HERE

Read more

https://cdn.mos.cms.futurecdn.net/Qmdw64c5Lo3KPyWVwmj5FS-2560-80.jpg

‘Powerful AI systems can go rogue, behave in extremely dangerous ways, or even resist human intervention’: A bill requiring AI systems to have a ‘kill switch’ is now in Congress

* A bipartisan bill introduced to Congress calls for AI models to have a kill switch * The bill follows months of warnings about the dangers of rapidly advancing AI technology from major AI firms * An 'unprecedented cyber incident' between OpenAI and Hugging Face prompted the introduction of the bill