Eclypsium Webinar: Navigating the BootHole Mitigation Process
 Navigating the BootHole Mitigation Process
Featured Speaker: John Loucaides, VP of Research & Development, Eclypsium
 
Tuesday, August 18, 2020
1:00pm ET; 10:00am PT
60 minutes
Online

Eclypsium researchers recently disclosed an arbitrary code execution vulnerability in the GRUB2 bootloader that can bypass Unified Extensible Firmware Interface (UEFI) and OS Secure Boot, impacting other OS defenses. In this webinar, John Loucaides, VP of Research & Development at Eclypsium, will help government agencies understand how to navigate the complex process of mitigating the GRUB2 BootHole vulnerability - without inadvertently making systems unusable or breaking enterprise disaster recovery processes.


 Why is this a concern?

Attackers exploiting this vulnerability can install persistent and stealthy bootkits or malicious bootloaders that could give them control over the victim device. While Windows does not use GRUB, the fact that UEFI-based computers ‘trust’ the vulnerable version of GRUB makes it possible for a Windows boot process to be compromised by this vulnerability. The impact includes public/private cloud instances, data center servers, end-user desktops/laptops, and Linux-based OT / IoT devices.

The National Security Agency has released a Cybersecurity Advisory (CSA) on the BootHole vulnerability (CVE-2020-10713), indicating that it poses a risk to a majority of Linux distributions and systems running on Windows 8 or later versions. That includes those on National Security Systems, Department of Defense (DoD) systems, as well as the Defense Industrial Base (DIB).


Join us to learn more about how to safely mitigate this vulnerability!


carahsoft
Nathaniel Levinson
571-662-4653

We are pleased to offer continuing professional education (CPE) credits to those that attend the event. For more information on the CPE credits we are offering, our CPE sponsor (NASBA), and the submission process, please read our CPE information page.
By supplying my contact information, I authorize Carahsoft and its vendors and partner community to contact me with personalized communications about their products and services. Please review our Privacy Policy for more details or to opt-out at any time.
 
 
 
© 2020 Carahsoft Technology Corp.
11493 Sunset Hills Road
Reston, Virginia  20190
www.carahsoft.com
T: 703.871.8500  |  F: 703.871.8505