PKfail Secure Boot bypass remains a significant risk two months later

Teilen:

Roughly nine percent of tested firmware images use non-production cryptographic keys that are publicly known or leaked in data breaches, leaving many Secure Boot devices vulnerable to UEFI bootkit malware attacks.

Known as ‘PKfail,’ and now tracked as CVE-2024-8105, the supply chain attack is caused by test Secure Boot master key (Platform Key “PK”), which computer vendors were supposed to replace with their own securely generated keys.

Even though these keys were marked as “DO NOT TRUST,” they were still used by numerous computer manufacturers, including Acer, Dell,  Fujitsu, Gigabyte, HP, Intel, Lenovo, Phoenix, and Supermicro.

The issue was discovered by Binarly in late July 2024, which warned about the use of untrusted test keys, many already leaked on GitHub and other locations, on over eight hundred consumer and enterprise device models.

PKfail could allow threat actors to bypass Secure Boot protections and plant undetectable UEFI malware on vulnerable systems, leaving users no way to defend or even discover the compromise.

PKfail impact and response

As part of their research, Binarly released a “PKfail scanner,” which vendors can use to upload their firmware images to see if they’re using a test key.

Since its release, the scanner has found 791 vulnerable firmware submissions out of 10,095, according to the latest metrics.

“Based on our data, we found PKfail and non-production keys on medical devices, desktops, laptops, gaming consoles, enterprise servers, ATMs, POS terminals, and some weird places like voting machines.” reads the new report by Binarly.

The majority of the vulnerable submissions are keys from AMI (American Megatrends Inc.), followed by Insyde (61), Phoenix (4), and one submission from Supermicro.

Firmware images scanned over time
Firmware images scanned over time
Source: Binarly

For the Insyde keys, which were generated in 2011, Binarly says that the firmware image submissions reveal they’re still used in modern devices. Previously, it was assumed that they were only to be found in legacy systems.

The community has also confirmed that PKfail impacts specialized devices from Hardkernel, Beelink, and Minisforum, so the flaw’s impact is broader than first estimated.

Binarly comments that vendor response to PKfail has generally been proactive and swift, though not everyone quickly published advisories about the security risk. Bulletins on PKfail are currently available by Dell, Fujitsu, Supermicro, Gigabyte, Intel, and Phoenix.

Several vendors have already released patches or firmware updates to remove vulnerable Platform Keys or replace them with production-ready cryptographic materials, and users can get those by updating their BIOS.

If your device is no longer supported and is unlikely to receive security updates for PKfail, it is recommended that physical access to it be limited and that it be isolated from more critical parts of the network.

Kommentar verfassen

Deine E-Mail-Adresse wird nicht veröffentlicht. Erforderliche Felder sind mit * markiert

lade-bild
London, GB
2:55 am, Juni 24, 2025
Wetter-Symbol 14°C
L: 13° | H: 15°
wenige Wolken
Luftfeuchtigkeit: 74 %
Druck: 1014 mb
Wind: 11 mph W
Windböe: 0 mph
UV-Index: 0
Niederschlag: 0 mm
Wolken: 11%
Regen Chance: 0%
Sichtbarkeit: 10 km
Sonnenaufgang: 4:43 am
Sonnenuntergang: 9:21 pm
TäglichStündlich
Tägliche VorhersageStündliche Vorhersage
Today 10:00 pm
Wetter-Symbol
13° | 15°°C 0 mm 0% 14 mph 75 % 1014 mb 0 mm/h
Tomorrow 10:00 pm
Wetter-Symbol
16° | 28°°C 0 mm 0% 9 mph 86 % 1013 mb 0 mm/h
Do. Juni 26 10:00 pm
Wetter-Symbol
17° | 25°°C 1 mm 100% 17 mph 91 % 1017 mb 0 mm/h
Fr. Juni 27 10:00 pm
Wetter-Symbol
16° | 28°°C 0 mm 0% 16 mph 71 % 1020 mb 0 mm/h
Sa. Juni 28 10:00 pm
Wetter-Symbol
18° | 28°°C 0 mm 0% 12 mph 88 % 1023 mb 0 mm/h
Today 4:00 am
Wetter-Symbol
14° | 14°°C 0 mm 0% 9 mph 74 % 1014 mb 0 mm/h
Today 7:00 am
Wetter-Symbol
15° | 16°°C 0 mm 0% 11 mph 75 % 1014 mb 0 mm/h
Today 10:00 am
Wetter-Symbol
17° | 18°°C 0 mm 0% 13 mph 74 % 1013 mb 0 mm/h
Today 1:00 pm
Wetter-Symbol
20° | 20°°C 0 mm 0% 14 mph 72 % 1012 mb 0 mm/h
Today 4:00 pm
Wetter-Symbol
22° | 22°°C 0 mm 0% 13 mph 61 % 1012 mb 0 mm/h
Today 7:00 pm
Wetter-Symbol
23° | 23°°C 0 mm 0% 12 mph 52 % 1011 mb 0 mm/h
Today 10:00 pm
Wetter-Symbol
20° | 20°°C 0 mm 0% 9 mph 67 % 1013 mb 0 mm/h
Tomorrow 1:00 am
Wetter-Symbol
17° | 17°°C 0 mm 0% 8 mph 78 % 1013 mb 0 mm/h
Name Preis24H (%)
Bitcoin(BTC)
€90,682.26
4.22%
Ethereum(ETH)
€2,078.24
7.65%
Fesseln(USDT)
€0.86
0.04%
XRP(XRP)
€1.85
7.03%
Solana(SOL)
€123.89
8.36%
USDC(USDC)
€0.86
0.01%
Dogecoin(DOGE)
€0.140899
7.69%
Shiba Inu(SHIB)
€0.000010
9.51%
Pepe(PEPE)
€0.000009
11.73%
Nach oben scrollen