NSA Tips cover art

NSA Tips

Blacklotus Mitigation Guide

Preview

£0.00 for first 30 days

Try for £0.00
Pick 1 audiobook a month from our unmatched collection - including bestsellers and new releases.
Listen all you want to thousands of included audiobooks, Originals, celeb exclusives, and podcasts.
Access exclusive sales and deals.
£7.99/month after 30 days. Renews automatically. See here for eligibility.

NSA Tips

By: National Security Agency
Narrated by: Tom Brooks
Try for £0.00

£7.99/month after 30 days. Renews automatically. See here for eligibility.

Buy Now for £6.99

Buy Now for £6.99

Confirm Purchase
Pay using card ending in
By completing your purchase, you agree to Audible's Conditions of Use and authorise Audible to charge your designated card or any other card on file. Please see our Privacy Notice, Cookies Notice and Interest-based Ads Notice.
Cancel

About this listen

BlackLotus is a recently publicized malware product garnering significant attention within tech media. Similar to 2020’s BootHole (CVE-2020-10713), BlackLotus takes advantage of a boot loader flaw—specifically CVE-2022-21894 Secure Boot bypass known as “Baton Drop”—to take control of an endpoint from the earliest phase of software boot. Microsoft® issued patches for supported versions of Windows to correct boot loader logic. However, patches were not issued to revoke trust in unpatched boot loaders via the Secure Boot Deny List Database (DBX). Administrators should not consider the threat fully remediated as boot loaders vulnerable to Baton Drop are still trusted by Secure Boot. As described in this Cybersecurity Information Sheet (CSI), NSA recommends infrastructure owners take action by hardening user executable policies and monitoring the integrity of the boot partition. An optional advanced mitigation is to customize Secure Boot policy by adding DBX records to Windows® endpoints or removing the Windows Production CA certificate from Linux® endpoints.

PLEASE NOTE: When you purchase this title, the accompanying PDF will be available in your Audible Library along with the audio.

©2023 Tom Brooks (P)2023 Tom Brooks
Security & Encryption Computer Security Software Hacking
activate_Holiday_promo_in_buybox_DT_T2

Listeners also enjoyed...

Hacking with Kali Linux cover art
Computer Science 2.0 Beginners Crash Course cover art
Zero Trust and Third-Party Risk cover art
The Ultimate Exam Prep A Comprehensive Study Guide for the AWS Certified Solutions Architect cover art
Hacking with Kali Linux cover art
Cybersecurity cover art
Kubernetes Handbook: Non-Programmer’s Guide to Deploy Applications with Kubernetes cover art
Cyber Security cover art
Cyber Essentials cover art
Microservices with Kubernetes: Non-Programmer’s Handbook cover art
Simple CISSP Exam Questions cover art
Hacking cover art
Cybersecurity for Beginners cover art
Essential CISA Exam Guide: Updated for the 26th Edition cover art
CompTIA Security+ cover art
Computer Networking cover art

What listeners say about NSA Tips

Average customer ratings

Reviews - Please select the tabs below to change the source of reviews.