A new malware is infecting Gigabyte motherboards – and there likely won’t be a fix any time soon




  • Binarly spotted multiple flaws in UEFI firmware built by AMI
  • AMI released fixes months ago, so users should update now
  • Many Gigabyte motherboards reached EOF and thus won’t be patched

UEFI firmware on dozens of Gigabyte motherboards is vulnerable to a handful of flaws which theoretically allow threat actors to deploy bootkits on compromised devices, establish stubborn persistence and execute additional malicious code remotely, experts have warned.

Security researchers Binarly recently discovered four vulnerabilities in UEFI firmware developed by American Megatrends Inc. (AMI). All four have a high severity score (8.2/10), and can lead to privilege escalation, malware installation, and other potentially destructive outcomes. They are tracked as CVE-2025-7026, CVE-2025-7027, CVE-2025-7028, and CVE-2025-7028.



Source link

Leave a Reply

Your email address will not be published. Required fields are marked *