April 18–19, 2018 Boston Convention & Exhibition Center Boston, MA

ESC Boston 2018 Schedule Viewer

Use the scheduling tool below to browse all the available sessions, speakers and topics at this year's event. Find the content and sessions to fit all of your educational needs and ensure you get the most out of your time at the show.

What You Don't Know About Firmware Might Get You 0wn3d

Speaker:

Brian Richardson (Sr. Technical Marketing Engineer, Intel Corporation)

Date: Thursday, April 19

Time: 8:00am - 8:45am

Pass type: Conference (Paid) - Get your pass now!

Free Content & Activities: N/A

Conference Track: Embedded Software Design & Verification, Connected Devices and the Internet of Things (IoT)

Vault Recording: TBD

Audience Level: N/A

In recent years, firmware has become a more attractive target for hackers. Insecure firmware can allow attackers to install persistent exploits below the OS layer. Developers need to understand why attackers target firmware, the makeup of common attacks, and how to secure platforms against common attacks.

This session uses research from Intel and McAfee Advanced Threat Research (ATR) to describe common attacks on UEFI firmware, using open source examples to demonstrate best practices for detecting and preventing low-level system exploits.

Takeaway

Attendees will learn about common methods used by attackers to circumvent OS-level protections and install persistent attacks in
platform firmware. The session will also demonstrate tools used to detect firmware issues, and best practices for firmware developers using open source UEFI examples.