By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
Pratzo - Daily NewsPratzo - Daily NewsPratzo - Daily News
Notification Show More
Font ResizerAa
  • Technology
    • AI & Machine Learning
    • Software & Apps
    • Hardware & Gadgets
    Technology
    Show More
    Top News
    South Korea’s Central Bank Dismisses Bitcoin as Reserved Asset Citing Uncertainty, Risks: Report
    March 17, 2025
    Zoom AI Companion Is Being Upgraded With Agentic Capabilities and New AI Features
    March 18, 2025
    Vivo X200 Ultra Colour Options Leaked; Tipped to Get 2K Resolution Display
    March 19, 2025
    Latest News
    Red Magic Astra Gaming Tablet Launched With Snapdragon 8 Elite SoC, 8,200mAh Battery
    July 2, 2025
    Samsung Galaxy Z Flip 7 FE Name Appears in Alleged Third-Party Case Listing Alongside Galaxy Z Flip 7
    July 2, 2025
    Poco F7 5G Confirmed to Get Snapdragon 8s Gen 4 Chipset Ahead of June 24 Launch
    July 2, 2025
    Threads Rolls Out DMs With Message Controls, Inbox Filters for Users Aged 18 and Above
    July 2, 2025
  • Digital Marketing
    • Social Media Updates
    • PPC & Ads Insights
    • SEO Trends
    • Content Marketing Strategies
    Digital MarketingShow More
    70% of Senior Marketers Support Google’s Decision to Retain Third-Party Cookies on Chrome
    December 6, 2024
  • Lifestyle & Productivity
    • Personal Productivity Tools
    • Smart Home Tech
    • Wearables
    • Wellness Gadgets
    Lifestyle & ProductivityShow More
    Allu Arjun’s Bail Hearing Postponed to January 3
    December 31, 2024
    Pushpa 2 Full Movie Leaked Online
    Pushpa 2 Full Movie Leaked Online: A Major Setback Despite Record Pre-Sales
    December 5, 2024
    Pushpa 2: The Rule Movie Review – A Gripping Mass Entertainer
    December 5, 2024
  • Automobile
    AutomobileShow More
    New Petrol Price in India: Crude Oil Prices Fall – Check Today’s Rates
    January 25, 2025
    All-New Honda Amaze 2025 Launched in India – Prices Start at ₹7.99 Lakh
    December 5, 2024
    Mahindra XEV 9e Launched In India Priced At ₹ 21.90 Lakh: Check Range, Features, and More
    November 27, 2024
Reading: Microsoft Uses Security Copilot to Identify 20 Flaws in Open-Source Bootloaders
Share
Font ResizerAa
Pratzo - Daily NewsPratzo - Daily News
Search
Follow US
Pratzo - Daily News > Technology > Microsoft Uses Security Copilot to Identify 20 Flaws in Open-Source Bootloaders
Technology

Microsoft Uses Security Copilot to Identify 20 Flaws in Open-Source Bootloaders

admin
Last updated: April 2, 2025 7:53 pm
admin Published April 2, 2025
Share
SHARE

Microsoft Security Copilot, an artificial intelligence (AI) cybersecurity tool, was used to discover several previously unknown vulnerabilities in open-source bootloaders. The Redmond-based tech giant recently revealed a list of the security flaws discovered in three commonly used bootloaders. One of the bootloaders is the default for many Linux-based systems, while the other two are typically used for embedded systems and Internet of Things (IoT) devices. Notably, Microsoft has informed the bootloader maintainers about the exploits, and they have released security updates to fix them.

Microsoft Showcases Its AI System’s Vulnerability Discovery Process

In a blog post, Microsoft detailed the discovery process and extent of risk with these vulnerabilities. The company used Security Copilot, an AI-powered security analysis tool that can assist in protecting organisations from threat actors as well as discovering security flaws. These vulnerabilities were detected in GRand Unified Bootloader (GRUB2), U-Boot, and Barebox, commonly used bootloaders for operating systems and devices.

GRUB2 is the default bootloader for many Linux-based systems, whereas U-Boot and Barebox are generally seen in embedded systems and IoT devices. Notably, a bootloader is a small program that runs before the operating system (OS) starts. It is responsible for loading the OS into memory and initiating the boot process.

By using AI, Microsoft Threat Intelligence discovered 11 vulnerabilities in GRUB2, including issues like integer overflows, buffer overflows, and a cryptographic side-channel flaw. These security flaws could allow threat actors to bypass the Unified Extensible Firmware Interface (UEFI) Secure Boot, which is designed to prevent unauthorised code from running during the boot process.

Security Copilot also discovered nine vulnerabilities in U-Boot and Barebox. These were primarily buffer overflows that affected file systems such as SquashFS, EXT4, CramFS, JFFS2, and symlinks. Notably, the threat actor would need to have physical access to the device to exploit these flaws, however, the security risk still exists.

In the case of GRUB2, Microsoft explained that the vulnerabilities could be exploited by attackers to install stealthy bootkits remotely. This is concerning, as such bootkits can persist even after reinstalling the operating system or replacing the hard drive.

The teams behind GRUB2, U-Boot, and Barebox have already released security updates in February to address these vulnerabilities. Users are advised to update their systems to the latest versions to protect themselves from potential cyberattacks.

Affiliate links may be automatically generated – see our ethics statement for details.

source

You Might Also Like

Red Magic Astra Gaming Tablet Launched With Snapdragon 8 Elite SoC, 8,200mAh Battery

Samsung Galaxy Z Flip 7 FE Name Appears in Alleged Third-Party Case Listing Alongside Galaxy Z Flip 7

Poco F7 5G Confirmed to Get Snapdragon 8s Gen 4 Chipset Ahead of June 24 Launch

Threads Rolls Out DMs With Message Controls, Inbox Filters for Users Aged 18 and Above

Lumio Arc 5, Arc 7 Projectors Powered by Google TV to Launch in India on July 7

TAGGED:Satellite TechnologySpace TechnologyTechnology
Share This Article
Facebook Twitter Email Print
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Current Gold Rate: 3681.90 INR per gram

Follow US

Find US on Social Medias
FacebookLike
TwitterFollow
YoutubeSubscribe
TelegramFollow

Weekly Newsletter

Subscribe to our newsletter to get our newest articles instantly!

    Popular News
    Technology

    Archaeologists Discover 4,400-Year-Old Tomb of Egyptian Prince in Saqqara

    admin admin May 1, 2025
    Realme P3 Pro First Impressions: Sensible Upgrades
    EMI OTT Release Date: When and Where to Watch Tamil Family Drama Online?
    Earth’s Mantle Could Be Harbouring Ocean of Magma Formed Billions of Years Ago, Claims Study
    Redmi Turbo 4 Pro Launch Set for April 24; Design, Colour Options Revealed
    - Advertisement -
    Ad imageAd image

    Always Stay Up to Date

    Subscribe to our newsletter to get our newest articles instantly!

      About US

      At News.Pratzo.com, we are shaping the conversation in business and technology with reliable insights and updates. As part of the Pratzo.com brand, we aim to be your trusted source for impactful stories and trends, empowering professionals and enthusiasts alike. Stay informed, inspired, and ahead with us!
      Quick Link
      • Automobile
      • News
      • Cricket
      • Lifestyle & Productivity
      • Entertainment
      • Reviews & Comparisons
      • Digital Marketing
      • SEO Trends
      • Technology
      • AI & Machine Learning

      © Flair Hair & Beauty Salon London 2025

      © Pratzo News Network. Assets of Pratzo.com . All Rights Reserved.
      Go to mobile version